| A systematic method to analyze security risks and bring in cost effective safeguards to reduce risk
| Cost-benefit: Have to "sell" it to management
| Risk Management in simpler terms:
| 1. Decide what you need to protect.
| 2. Decide what you need to protect it from.
| 3. Decide how to protect it. | | | | | |