Difference between revisions of "Risk Analysis"

From CIPedia
Jump to navigation Jump to search
(Other International Definitions)
Line 4: Line 4:
 
{{definition|The consideration of relevant [[threat]] scenarios, in order to assess the [[vulnerability]] and the potential [[impact]] of [[disruption]] or [[destruction]] of [[critical infrastructure]] <ref> [http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:L:2008:345:0075:0082:EN:PDF Council Directive 2008/114/EC of 8 December 2008 on the identification and designation of European critical infrastructures and the assessment of the need to improve their protection.]</ref>.}}
 
{{definition|The consideration of relevant [[threat]] scenarios, in order to assess the [[vulnerability]] and the potential [[impact]] of [[disruption]] or [[destruction]] of [[critical infrastructure]] <ref> [http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:L:2008:345:0075:0082:EN:PDF Council Directive 2008/114/EC of 8 December 2008 on the identification and designation of European critical infrastructures and the assessment of the need to improve their protection.]</ref>.}}
  
 +
<!---
 
=== Other International Definitions ===
 
=== Other International Definitions ===
 +
--->
  
 
=== National Definitions ===
 
=== National Definitions ===

Revision as of 22:13, 18 April 2015

Definitions

European Definitions

Council Directive 2008/114/EC

The consideration of relevant threat scenarios, in order to assess the vulnerability and the potential impact of disruption or destruction of critical infrastructure [1].


National Definitions

United States

The process of identifying risks to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, and the Nation, arising through the operation of an information system.[2]



Standard Definition

ISO/IEC 27000:2014 and ISO 31000:2009

Process to comprehend the nature of risk and to determine the level of risk (based on the ISO Guide 73:2009) [3] [4]

Level of risk is expressed in terms of the combination of consequences and their likelihood.


See also

Notes