Expert Advice Community

Guest

How are Risk assessment table and Risk treatment table different?

  Quote
Guest
Guest user Created:   Nov 30, 2016 Last commented:   Nov 30, 2016

How are Risk assessment table and Risk treatment table different?

From what we see the risk assement table and the risk treatment table are basically the same on page 1 , on the treatment doc there is obviously the extra treatment and controls section. Is there a reason for this or it can be done all in one document ?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Dejan Kosutic Nov 30, 2016

Answer: Risk assessment table and Risk treatment table should be used separately, because in the Risk Assessment table you should list all the risks, whereas in the Risk treatment table you should copy only those risks that are not acceptable. The point is, in the Risk treatment table you will add controls only for the unacceptable risks and this is why you shouldn't mix this table with the Risk assessment table.

When doing the risk assessment and treatment, you should develop the Risk assessment & treatment methodology first, because it will define all the rules for performing this task; also very important is that you view the video tutorials that came with your toolkit - they will explain all the details on how to fill out the documents and provide you with couple of real-life examp les.

These materials will also help you regarding risk assessment and treatment:
- Book Secure & Simple: A Small-Business Guide to Implementing ISO 27001 On Your
Own https://advisera.com/books/secure-and-simple-a-small-business-guide-to-implementing-iso-27001-on-your-own/
- Free online training ISO 27001 Foundations Course
https://advisera.com/training/iso-27001-foundations-course/
- Conformio (online ISO 27001 tool) https://advisera.com/conformio/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Nov 29, 2016

Nov 29, 2016