Which activity below is NOT included in the information security risk assessment process?
The information security risk assessment process, as outlined in ISO/IEC 27005, typically includes identifying risks, assessing their potential impact, and prioritizing them. However, selecting risk treatment options is not part of the risk assessment process itself; it is part of the subsequent risk treatment phase. Therefore, option C is the correct answer as it is not included in the risk assessment process.
Roosevelt
6 months agoTu
6 months agoJustine
5 months agoJulian
5 months agoFelicia
5 months agoTomoko
6 months agoSherly
5 months agoNida
5 months agoDana
5 months agoMeghan
6 months agoDean
6 months agoJamika
6 months agoDong
6 months agoAlyce
6 months agoRoosevelt
6 months ago