Use promo code:
CTA20

Expert Advice Community

Guest

Qualitative and quantitative risk assessments

  Quote
Guest
Guest user Created:   Aug 17, 2017 Last commented:   Aug 17, 2017

Qualitative and quantitative risk assessments

what is the difference between qualitative assessment and quantitative assessment?
0 0

Assign topic to the user

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

Expert
Rhand Leal Aug 17, 2017

Answer: Qualitative risk assessment focuses on interested parties perceptions about risks, expressing risk in terms of scales like “low – medium – high” or “1 – 2 – 3”, while quantitative risk assessment focuses on factual and measurable data, normally expressing risk values in monetary terms.

This article will provide you further explanation about qualitative and quantitative risk assessments:
- Qualitative vs. quantitative risk assessments in information security: Differences and similarities https://advisera.com/27001academy/blog/2017/03/06/qualitative-vs-quantitative-risk-assessments-in-information-security/

These materials will also help you regarding qualitative and quantitative risk assessments:
- Book ISO 27001 Risk Management in Plain English https://advisera.com/books/iso-27001-annex-controls-plain-english/
- Free online training ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Aug 17, 2017

Aug 17, 2017

Suggested Topics

Guest user Created:   Feb 14, 2019 ISO 27001 & 22301
Replies: 1
0 0

Risk management approach

Guest user Created:   Dec 03, 2018 ISO 27001 & 22301
Replies: 1
0 0

ISO and COBIT