Based on scenario 3, which risk treatment option did EsTeeMed select after analysing the Incident?
After analyzing the incident, EsteeMed decided to accept the actual risk level, deeming the likelihood of a similar incident occurring in the future as low and considering the existing security measures as sufficient. This decision indicates that EsteeMed selected the risk treatment option of risk retention, where the organization accepts the risk and continues operations without additional measures.
ISO/IEC 27005:2018 - Provides guidelines for information security risk management and details various risk treatment options, including risk retention, where risks are accepted by the organization.
NIST SP 800-39 - Managing Information Security Risk, which discusses risk management strategies including risk retention.
Regenia
3 days agoJacklyn
8 days agoSon
13 days agoAlease
18 days agoMabelle
23 days agoViola
29 days agoAmina
1 month agoDick
1 month agoGeorgeanna
1 month agoLonna
2 months agoCherrie
2 months agoXuan
2 months ago