Applying impact and vulnerability analysis to risk management

Peter D. Stephenson · Computer Fraud & Security · 2004

Last month we looked closely at the notions of threat analysis and policy domain identification as components of the FARES (Forensic Analysis of Risks in Enterprise Systems) process. This month we move on to impact and vulnerability analysis . These two areas are among the toughest elements of the FARES process for very different reasons.

Read the paper · More papers on PaperTik