Security and Risk Management
Dr. Muhammad Yousaf
Riphah Institute of Systems Engineering (RISE),
Riphah International University, Islamabad
,Contents
• Security Fundamentals
• Security Governance
• Risk Management
• Business Continuity Requirements
• Laws, Regulations, Compliance
• Security Trainings, Awareness
2
, Security Fundamentals
3
, Security ??
• A condition that results from the
establishment and maintenance of
protective measures
• that enable an enterprise to perform its
mission or critical functions
• despite risks posed by threats to its use
of information systems.
— Ref: NIST Glossary of Key Information Security Terms NIST IR 7298 Rev. 2, 2013
— National Institute of Standards and Technology (NIST), USA
4