Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

Risk Assessment

Subject: Risk Assessment
Date: 18 May 2006 14:32:37 -0000
This is quickly becoming one of my favorite sites ever.  

Anyway, I posted a message in the Focus on Microsoft List about securing FE/BE 
Communications in Exchange.  I was presented with many options.  And with all 
of those options was a common theme.  Risk assessment.  

I know that people make entire careers out of risk assessment.  But I was 
wondering if anyone could point me to a source that gives a general outline how 
to quantitatively calculate risk so that something can be presented to 
management in the form of numbers.  It'll be nice to come to someone with 
something more concrete than..."well, it could happen."  

Oh yeah, I don't have an IDS or anything so it's not like I can go to them and 
say this is how many times we get scanned, etc.  

<Prev in Thread] Current Thread [Next in Thread>