IT / Information Security Risk Management With Examples

แชร์
ฝัง
  • เผยแพร่เมื่อ 25 ม.ค. 2025

ความคิดเห็น • 77

  • @calvinworst
    @calvinworst 8 หลายเดือนก่อน

    Here are the learning outcomes for anyone who needs them (they're all listed at 27:59)
    What is Risk?
    Why do we need risk management
    What is risk management?
    What is risk assessment?
    What is risk treatment?
    What is likelihood, impact, inherent and residual risk?
    Difference between threat, vulnerability and risk.
    Difference between asset owner and asset custodian.
    Difference between risk management and risk assessment.
    Difference between quantitative, qualitative, and semi-quantitative risk management.
    The Risk Management Process.

  • @vback4238
    @vback4238 8 หลายเดือนก่อน +1

    Watching it again and it even got better!

  • @ihammads
    @ihammads ปีที่แล้ว +1

    good video, Thank you! but need to learn, how to implement this as well :)

  • @AhmedAbrahan
    @AhmedAbrahan 3 ปีที่แล้ว

    I will be joining as a Information Security Risk Analyst next month. This will help me prepare. Thank you.

    • @aliqureshi2227
      @aliqureshi2227  3 ปีที่แล้ว

      It definitely will. Do let me know on what other topics you would like to hear me on.

  • @esmatsaidy
    @esmatsaidy ปีที่แล้ว

    You put everything in order and the explanation was so comprehensive

    • @aliqureshi2227
      @aliqureshi2227  ปีที่แล้ว

      Thank you very much for your kind feedback

  • @achajackson5898
    @achajackson5898 ปีที่แล้ว

    I’m an info sec risk analyst for my bank. This is great resource!!

    • @aliqureshi2227
      @aliqureshi2227  ปีที่แล้ว

      Thank you very much. Really appreciate it!

  • @salaheddinebelmadani2892
    @salaheddinebelmadani2892 4 หลายเดือนก่อน

    Hello Ali , Thank you for this helpful video . can you make video about Assent / process Inventory exercise ?

  • @nihalshah4113
    @nihalshah4113 ปีที่แล้ว

    Hi Ali
    Would be very helpful if you can provide a link to the actual slide deck itself.
    Great video! Thanks for the explanation!

  • @x8EchoslaM8x
    @x8EchoslaM8x 4 ปีที่แล้ว +2

    Thank you for your time and effort at creating this. Good job. Keep it up. I learned something new too.

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว

      Thank you very much. I really appreciate it.

  • @ramganesh6027
    @ramganesh6027 ปีที่แล้ว +2

    One of the excellent and crisp explanations that I have seen so far. Thank You so much!

  • @vback4238
    @vback4238 8 หลายเดือนก่อน +1

    Excellent job!! You are great!

    • @aliqureshi2227
      @aliqureshi2227  8 หลายเดือนก่อน

      Thank you very much!

  • @adilaziz6778
    @adilaziz6778 3 ปีที่แล้ว +1

    Excellent content for beginners. Thank you for your effort

  • @MatiniSanni
    @MatiniSanni ปีที่แล้ว

    Great information Ali. I like how you structure and explained the concepts. Keep up the good work!

  • @mayankraj2806
    @mayankraj2806 ปีที่แล้ว

    Very good content. Thanks for sharing this

    • @aliqureshi2227
      @aliqureshi2227  ปีที่แล้ว

      Thank you for your feedback @mayankraj2806. Really appreciate it

  • @tejaswiniaradhya3008
    @tejaswiniaradhya3008 ปีที่แล้ว +1

    Are we not considering the process value/asset value for risk score calculation?

    • @aliqureshi2227
      @aliqureshi2227  ปีที่แล้ว

      Thank you very much for bringing this up. Yes, in this video the asset valuation is not discussed in specific however, theoretically just in the context of this content, consider it be part of asset identification.

  • @asankadhananjaya8431
    @asankadhananjaya8431 2 ปีที่แล้ว

    Wow…. Great explanation and well organized. 👏👏👏

  • @ramamohangadiyaram9004
    @ramamohangadiyaram9004 ปีที่แล้ว

    Excellent Mr Ali!!

  • @mamtakrishna2901
    @mamtakrishna2901 ปีที่แล้ว +1

    Quite helpful and interesting, thank you

  • @bala007raju
    @bala007raju 4 ปีที่แล้ว +1

    Thanks for the session , I guess in 18:01 , it should be NIST SP 800-30 in place of NIST SP 800-50 .

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว +1

      Thank you! and Absolutely. Apologies from my end. Will manage the rectification.

  • @rruth9098
    @rruth9098 2 ปีที่แล้ว +1

    This is a great overview.

  • @tausefkhan
    @tausefkhan 2 ปีที่แล้ว +1

    Thank you for the informative information. Do you have a default template to use?

    • @aliqureshi2227
      @aliqureshi2227  2 ปีที่แล้ว

      Thanks Tausef. Unfortunately, no.

  • @javedakhter82
    @javedakhter82 3 ปีที่แล้ว

    Very easy understanding. Thanks for such working.

    • @aliqureshi2227
      @aliqureshi2227  3 ปีที่แล้ว

      Thank you very much Javed! Really appreciate it.

  • @ahmedaliareeb8783
    @ahmedaliareeb8783 2 ปีที่แล้ว

    It was informative, Ali! Thanks for the video

    • @aliqureshi2227
      @aliqureshi2227  2 ปีที่แล้ว

      Thank you very much Ahmed. Really appreciate it.

  • @waqasabro9855
    @waqasabro9855 4 ปีที่แล้ว +1

    Nice initiative Ali.. 👍😇

  • @TheKnowledgeGateway498
    @TheKnowledgeGateway498 4 ปีที่แล้ว +2

    Good one.

  • @rohizzcool
    @rohizzcool 3 ปีที่แล้ว

    very good work..appreciate it

  • @kestere9862
    @kestere9862 4 ปีที่แล้ว

    Excellent delivery. Thank you.

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว

      Thank you very much Kester. I really appreciate it.

  • @PcgInspires
    @PcgInspires ปีที่แล้ว

    Thank you, extremely helpful

  • @phathiswabam2630
    @phathiswabam2630 4 ปีที่แล้ว +1

    Thank you very much for this video. It came very handy. Would you be able to recommend the academic journals within IT Security Risk Assessment that I could refer to for my literature review? That will be much appreciated.

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว +1

      Hi Phathiswa!
      Thank you for your kind words. It was encouraging.
      My apologies, I am no aware about any specific academic journals within the domain. But you can always refer to standardizing bodies and international platforms like SANS for the same.

    • @phathiswabam2630
      @phathiswabam2630 4 ปีที่แล้ว

      @@aliqureshi2227 so much appreciated Ali. I found something I could use by U Kumar plus the standards. Have a blessed new year 🙏

  • @paraskhullar3660
    @paraskhullar3660 2 ปีที่แล้ว +1

    Hello, i will a writing assignment about information security, security risks, security control, and the application of risk control and risk measures. So, can you help me like you make video as well as notes on it. Please help me.

  • @ras403
    @ras403 3 ปีที่แล้ว +1

    An excellent way of teaching. Thanks.
    In video while defining,
    residual risk = inherent risk - control value
    However, in overview of risk management process,
    residual risk = inherent risk divided by control value
    Which one is right?

    • @aliqureshi2227
      @aliqureshi2227  3 ปีที่แล้ว +1

      Thank you very much. I would recommend to use division as it leads to a reasonable residual risk value.

  • @stevejobs-m1u
    @stevejobs-m1u 4 ปีที่แล้ว

    Very concise and informative.

  • @lokanathmuduli6347
    @lokanathmuduli6347 ปีที่แล้ว

    What is the meaning of waiver and Derogation? in risk treatment.

    • @aliqureshi2227
      @aliqureshi2227  ปีที่แล้ว

      Waiver and derogation are just literal jargon.
      Both of them are related to risk acceptance. Waiver is where management allows you to allow a particular risk open as untreated. Same story is with derogation.
      The real deal is that what constitutes such waivers and derogation? - If the risk levels are low? If risk likelihood is high but impact is low? Or the benefit realized from a particular thing is far greater in value than the impact of the risk?

  • @ziyadalvi2094
    @ziyadalvi2094 4 ปีที่แล้ว

    Keep up the good work ❤️

  • @sanjai4685
    @sanjai4685 7 หลายเดือนก่อน

    👌🏻❤

  • @sandrapink17
    @sandrapink17 ปีที่แล้ว

    Great

  • @jasondudko3968
    @jasondudko3968 ปีที่แล้ว

    Thank you

  • @tanaysamanta4730
    @tanaysamanta4730 3 ปีที่แล้ว

    Nice !

  • @thiyagusathyathiyagaraja512
    @thiyagusathyathiyagaraja512 3 ปีที่แล้ว +1

    If u a notes please send it

  • @TVVDINAKARAN
    @TVVDINAKARAN 4 ปีที่แล้ว

    @16:45

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว

      I am sorry. Can you please translate that in to English if that is a question?

    • @TVVDINAKARAN
      @TVVDINAKARAN 4 ปีที่แล้ว +1

      @@aliqureshi2227 Oops sorry mate i marked the timeline for my purpose
      So that i can resume the video later from where i left it off

    • @aliqureshi2227
      @aliqureshi2227  4 ปีที่แล้ว

      @@TVVDINAKARAN No problem! :)

  • @ابيمرقصالحلواني-ع4د
    @ابيمرقصالحلواني-ع4د 3 ปีที่แล้ว +1

    انت مين

  • @ابيمرقصالحلواني-ع4د
    @ابيمرقصالحلواني-ع4د 3 ปีที่แล้ว

    النبي عربي ياعلوه