Expert Advice Community

Guest

Qualitative and quantitative risk assessments

  Quote
Guest
Guest user Created:   Aug 17, 2017 Last commented:   Aug 17, 2017

Qualitative and quantitative risk assessments

what is the difference between qualitative assessment and quantitative assessment?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Aug 17, 2017

Answer: Qualitative risk assessment focuses on interested parties perceptions about risks, expressing risk in terms of scales like “low – medium – high” or “1 – 2 – 3”, while quantitative risk assessment focuses on factual and measurable data, normally expressing risk values in monetary terms.

This article will provide you further explanation about qualitative and quantitative risk assessments:
- Qualitative vs. quantitative risk assessments in information security: Differences and similarities https://advisera.com/27001academy/blog/2017/03/06/qualitative-vs-quantitative-risk-assessments-in-information-security/

These materials will also help you regarding qualitative and quantitative risk assessments:
- Book ISO 27001 Risk Management in Plain English https://advisera.com/books/iso-27001-annex-controls-plain-english/
- Free online training ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Aug 17, 2017

Aug 17, 2017

Suggested Topics

Guest user Created:   Feb 14, 2019 ISO 27001 & 22301
Replies: 1
0 0

Risk management approach

Guest user Created:   Dec 03, 2018 ISO 27001 & 22301
Replies: 1
0 0

ISO and COBIT