Measuring and Managing Information Risk: A FAIR Approach

Measuring and Managing Information Risk: A FAIR Approach

by Jack Freund, Jack Jones
ISBN-10:
0124202314
ISBN-13:
9780124202313
Pub. Date:
08/22/2014
Publisher:
Elsevier Science
ISBN-10:
0124202314
ISBN-13:
9780124202313
Pub. Date:
08/22/2014
Publisher:
Elsevier Science
Measuring and Managing Information Risk: A FAIR Approach

Measuring and Managing Information Risk: A FAIR Approach

by Jack Freund, Jack Jones
$49.95 Current price is , Original price is $49.95. You
$52.59 
  • SHIP THIS ITEM
    Not Eligible for Free Shipping
  • PICK UP IN STORE
    Check Availability at Nearby Stores
  • SHIP THIS ITEM

    Temporarily Out of Stock Online

    Please check back later for updated availability.


Overview

Using the factor analysis of information risk (FAIR) methodology developed over ten years and adopted by corporations worldwide, Measuring and Managing Information Risk provides a proven and credible framework for understanding, measuring, and analyzing information risk of any size or complexity. Intended for organizations that need to either build a risk management program from the ground up or strengthen an existing one, this book provides a unique and fresh perspective on how to do a basic quantitative risk analysis. Covering such key areas as risk theory, risk calculation, scenario modeling, and communicating risk within the organization, Measuring and Managing Information Risk helps managers make better business decisions by understanding their organizational risk.


Product Details

ISBN-13: 9780124202313
Publisher: Elsevier Science
Publication date: 08/22/2014
Edition description: New Edition
Pages: 408
Product dimensions: 7.40(w) x 9.20(h) x 0.80(d)

About the Author

Dr. Jack Freund is a leading voice in cyber risk measurement and management. As VP, Head of Cyber Risk Methodology for BitSight, Jack has overall responsibility for the systemic development and application of frameworks, algorithms, and quantitative and qualitative methods to measure cyber risk. Previously, Jack was Director of Risk Science at quantitative risk management startup RiskLens and Director of Cyber Risk for TIAA. Jack holds a Ph.D. in Information Systems from Nova Southeastern University, a Masters in Telecommunication and Project Management, and a BS in CIS. Jack has been named a Senior Member of the IEEE and ACM, a Fellow of the IAPP and FAIR Institute, and a Distinguished Fellow of the ISSA. He is the 2020 recipient of the (ISC)2 Global Achievement Award, 2018 recipient of ISACA’s John W. Lainhart IV Common Body of Knowledge Award, and the FAIR Institute’s 2018 FAIR Champion Award.

Jack Jones has worked in information security for over 35 years, serving as a CISO with three different companies, including a Fortune 100 company. His work was recognized in 2006 with the ISSA Excellence in the Field of Security Practices award, and in 2012 he received the CSO Compass award. As an Adjunct Professor at Carnegie Mellon University, he teaches in the CRO and CISO executive programs. Jones also created the Factor Analysis of Information Risk (FAIR) model, as well as the FAIR Controls Analytics Model (FAIR-CAM), since adopted as international standards. Jones is the Chief Risk Scientist at RiskLens and Chairman of the FAIR Institute, an award-winning global non-profit organization.

Table of Contents

1. Introduction
2. Risk Concepts
3. FAIR Risk Ontology
4. FAIR Terminology
5. Measurement
6. Analysis Process
7. Interpreting Results
8. Risk Analysis Examples
9. Common Problems
10. Controls
11. Standards and Regulatory Alignment
12. Organizational Risk Decision Making
13. Metrics
14. Implementing Risk Management
15. Building Quantitative Risk Programs
16. Assessment Automation
17. Risk Measurement Red Flags
18. Invited Contribution

What People are Saying About This

From the Publisher

An updated, comprehensive resource that provides a much-needed, flexible methodology for measuring and managing information risk

From the B&N Reads Blog

Customer Reviews