
Identifying and Estimating Cybersecurity Risk for Enterprise Risk Management
No se pudo agregar al carrito
Add to Cart failed.
Error al Agregar a Lista de Deseos.
Error al eliminar de la lista de deseos.
Error al añadir a tu biblioteca
Error al seguir el podcast
Error al dejar de seguir el podcast
$0.99/mes por los primeros 3 meses

Compra ahora por $14.95
No default payment method selected.
We are sorry. We are not allowed to sell this product with the selected payment method
-
Narrado por:
-
Tom Brooks
Acerca de esta escucha
All organizations face a broad array of risks, including cybersecurity risk. For federal agencies, the Office of Management and Budget (OMB) Circular A-11 defines risk as “the effect of uncertainty on objectives”. An organization’s mission and business objectives can be impacted by such effects, and must be managed at various levels within the organization. This report highlights aspects of cybersecurity risk management (CSRM) inherent to enterprises, organizations, and systems.
The terms "organization" and "enterprise" are often used interchangeably; however, without an understanding of organizational structure, effective risk management is impossible. For the purposes of this document, an organization is defined as an entity of any size, complexity, or position within a larger organizational structure. The enterprise exists at the top level of the hierarchy where senior leaders have unique risk governance responsibilities. Each enterprise, such as a corporation or government agency, is comprised of organizations supported by systems.
This report describes CSRM activities at each level. Note that there may be iterative levels within the enterprise and that positions may be relative. For example, a given enterprise (e.g., a bureau or corporate division) may represent an organization to the overarching agency or corporation. Enterprise risk management (ERM) calls for understanding the core (i.e., significant) risks that an organization faces, and this document provides supplemental guidance for aligning cyber security risks within an organization’s overall ERM program. Lessons learned from historical cybersecurity incidents demonstrate the importance of collaboration among CSRM and ERM.
PLEASE NOTE: When you purchase this title, the accompanying PDF will be available in your Audible Library along with the audio.
©2021 Tom Brooks (P)2021 Tom BrooksLos oyentes también disfrutaron...
-
AWS Certified Developer Associate
- Step by Step Certification Study Guide, to Pass the Developers Exam with Confidence
- De: Jamie Murphy
- Narrado por: Tom Brooks
- Duración: 3 h y 43 m
- Versión completa
-
General
-
Narración:
-
Historia
Are you aspiring to become an AWS Certified Developer? Are you looking for a comprehensive resource to prepare for the AWS Certified Developer exam? Look no further! This book is your ultimate guide to acing the AWS Certified Developer certification by providing you with a robust set of practice test questions and detailed answers to help you succeed.
-
-
Read by AI
- De Luke en 06-22-24
De: Jamie Murphy
-
ChatGPT for Business
- The Best Artificial Intelligence Applications, Marketing and Tools to Boost Your Income
- De: Jake L Kent
- Narrado por: Tom Brooks
- Duración: 4 h y 28 m
- Versión completa
-
General
-
Narración:
-
Historia
In an era where AI is redefining industries, businesses are presented with unprecedented opportunities for growth and innovation. ChatGPT for Business unveils a comprehensive guide for harnessing the power of AI, specifically ChatGPT, to drive revenue, enhance customer engagement, and revolutionize operations.
-
-
Expertise and resources essential
- De Anonymous User en 09-05-23
De: Jake L Kent
-
Fundamentals of Enterprise Risk Management, Second Edition
- How Top Companies Assess Risk, Manage Exposure, and Seize Opportunity
- De: John J. Hampton
- Narrado por: Steven Menasche
- Duración: 9 h y 24 m
- Versión completa
-
General
-
Narración:
-
Historia
Extensively updated, the second edition of Fundamentals of Enterprise Risk Management examines the latest technologies, such as Riskonnect and High Tech Electronic Platform (HTEP), and helps listeners recognize both internal and external exposures, understand crucial concepts such as risk mapping and risk identification, and align risk opportunities with their organizations' business models.
-
-
Advertising spam, nothing to do with risk manageme
- De Alexander Sverdlov en 04-09-18
De: John J. Hampton
-
Strategic Risk Management
- New Tools for Competitive Advantage in an Uncertain Age
- De: Paul C. Godfrey, Emanuel Lauria, John Bugalla, y otros
- Narrado por: Joe Bronzi
- Duración: 8 h y 56 m
- Versión completa
-
General
-
Narración:
-
Historia
This audiobook presents a new approach to risk management that enables executives to think systematically and strategically about future risks and deal proactively with threats to their competitive advantages in an evermore volatile, uncertain, complex, and ambiguous world.
De: Paul C. Godfrey, y otros
-
Project Management Mastery
- A Comprehensive Guide to Successfully Implementing the Core Principles of Project Planning and Scope Management from Concept to Completion
- De: Jack Hayden
- Narrado por: KC Wayman
- Duración: 4 h y 3 m
- Versión completa
-
General
-
Narración:
-
Historia
Introducing Project Management Mastery—the ultimate guide to mastering project planning and scope management. This comprehensive book is perfect for project managers, team leaders, and anyone responsible for managing projects of any size, complexity, or industry.
-
-
Building Bridges, One Plan at a Time
- De Lily en 03-05-25
De: Jack Hayden
-
Sandworm
- A New Era of Cyberwar and the Hunt for the Kremlin's Most Dangerous Hackers
- De: Andy Greenberg
- Narrado por: Mark Bramhall
- Duración: 12 h y 2 m
- Versión completa
-
General
-
Narración:
-
Historia
In 2014, the world witnessed the start of a mysterious series of cyberattacks. Targeting American utility companies, NATO, and electric grids in Eastern Europe, the strikes grew ever more brazen. They culminated in the summer of 2017, when the malware known as NotPetya was unleashed, penetrating, disrupting, and paralyzing some of the world's largest businesses—from drug manufacturers to software developers to shipping companies. At the attack's epicenter in Ukraine, ATMs froze. The railway and postal systems shut down. Hospitals went dark.
-
-
Thru the eyes of the Sandworm's hunters and prey
- De ndru1 en 11-12-19
De: Andy Greenberg
-
AWS Certified Developer Associate
- Step by Step Certification Study Guide, to Pass the Developers Exam with Confidence
- De: Jamie Murphy
- Narrado por: Tom Brooks
- Duración: 3 h y 43 m
- Versión completa
-
General
-
Narración:
-
Historia
Are you aspiring to become an AWS Certified Developer? Are you looking for a comprehensive resource to prepare for the AWS Certified Developer exam? Look no further! This book is your ultimate guide to acing the AWS Certified Developer certification by providing you with a robust set of practice test questions and detailed answers to help you succeed.
-
-
Read by AI
- De Luke en 06-22-24
De: Jamie Murphy
-
ChatGPT for Business
- The Best Artificial Intelligence Applications, Marketing and Tools to Boost Your Income
- De: Jake L Kent
- Narrado por: Tom Brooks
- Duración: 4 h y 28 m
- Versión completa
-
General
-
Narración:
-
Historia
In an era where AI is redefining industries, businesses are presented with unprecedented opportunities for growth and innovation. ChatGPT for Business unveils a comprehensive guide for harnessing the power of AI, specifically ChatGPT, to drive revenue, enhance customer engagement, and revolutionize operations.
-
-
Expertise and resources essential
- De Anonymous User en 09-05-23
De: Jake L Kent
-
Fundamentals of Enterprise Risk Management, Second Edition
- How Top Companies Assess Risk, Manage Exposure, and Seize Opportunity
- De: John J. Hampton
- Narrado por: Steven Menasche
- Duración: 9 h y 24 m
- Versión completa
-
General
-
Narración:
-
Historia
Extensively updated, the second edition of Fundamentals of Enterprise Risk Management examines the latest technologies, such as Riskonnect and High Tech Electronic Platform (HTEP), and helps listeners recognize both internal and external exposures, understand crucial concepts such as risk mapping and risk identification, and align risk opportunities with their organizations' business models.
-
-
Advertising spam, nothing to do with risk manageme
- De Alexander Sverdlov en 04-09-18
De: John J. Hampton
-
Strategic Risk Management
- New Tools for Competitive Advantage in an Uncertain Age
- De: Paul C. Godfrey, Emanuel Lauria, John Bugalla, y otros
- Narrado por: Joe Bronzi
- Duración: 8 h y 56 m
- Versión completa
-
General
-
Narración:
-
Historia
This audiobook presents a new approach to risk management that enables executives to think systematically and strategically about future risks and deal proactively with threats to their competitive advantages in an evermore volatile, uncertain, complex, and ambiguous world.
De: Paul C. Godfrey, y otros
-
Project Management Mastery
- A Comprehensive Guide to Successfully Implementing the Core Principles of Project Planning and Scope Management from Concept to Completion
- De: Jack Hayden
- Narrado por: KC Wayman
- Duración: 4 h y 3 m
- Versión completa
-
General
-
Narración:
-
Historia
Introducing Project Management Mastery—the ultimate guide to mastering project planning and scope management. This comprehensive book is perfect for project managers, team leaders, and anyone responsible for managing projects of any size, complexity, or industry.
-
-
Building Bridges, One Plan at a Time
- De Lily en 03-05-25
De: Jack Hayden
-
Sandworm
- A New Era of Cyberwar and the Hunt for the Kremlin's Most Dangerous Hackers
- De: Andy Greenberg
- Narrado por: Mark Bramhall
- Duración: 12 h y 2 m
- Versión completa
-
General
-
Narración:
-
Historia
In 2014, the world witnessed the start of a mysterious series of cyberattacks. Targeting American utility companies, NATO, and electric grids in Eastern Europe, the strikes grew ever more brazen. They culminated in the summer of 2017, when the malware known as NotPetya was unleashed, penetrating, disrupting, and paralyzing some of the world's largest businesses—from drug manufacturers to software developers to shipping companies. At the attack's epicenter in Ukraine, ATMs froze. The railway and postal systems shut down. Hospitals went dark.
-
-
Thru the eyes of the Sandworm's hunters and prey
- De ndru1 en 11-12-19
De: Andy Greenberg
-
The Smartest Person in the Room
- The Root Cause and New Solution for Cybersecurity
- De: Christian Espinosa
- Narrado por: Kaleo Griffith
- Duración: 6 h y 54 m
- Versión completa
-
General
-
Narración:
-
Historia
With cyberattacks resulting in often devastating results, it’s no wonder executives hire the best and brightest of the IT world for protection. But are you doing enough? Do you understand your risks? What if the brightest aren’t always the best choice for your company? In The Smartest Person in the Room, Christian Espinosa shows you how to leverage your company’s smartest minds to your benefit and theirs. Learn from Christian’s own journey from cybersecurity engineer to company CEO.
-
-
Bland
- De Jonathan en 09-01-21
-
RMF ISSO: Foundations (Guide)
- NIST 800 Risk Management Framework for Cybersecurity Professionals
- De: Bruce Brown
- Narrado por: Frank Block
- Duración: 1 h y 32 m
- Versión completa
-
General
-
Narración:
-
Historia
This is a breakdown of the NIST risk management framework process for cybersecurity professionals getting into security compliance. It is written in layman's terms, without the convoluted way it is described in the NIST SP 800-37 revision 2. It goes into what the information system security officer does at each step in the process and where their attention should be focused. Although the main focus is on implementation of the NIST 800 RMF process, this book covers many of the main concepts on certifications, such as the ISC2 CAP.
-
-
Great supplement to the physical book
- De Andrea Christine en 06-08-24
De: Bruce Brown
-
Risk
- A User's Guide
- De: General Stanley McChrystal, Anna Butrico
- Narrado por: General Stanley McChrystal
- Duración: 10 h y 40 m
- Versión completa
-
General
-
Narración:
-
Historia
Retired four-star general Stan McChrystal has lived a life associated with the deadly risks of combat. From his first day at West Point, to his years in Afghanistan, to his efforts helping business leaders navigate a global pandemic, McChrystal has seen how individuals and organizations fail to mitigate risk. Why? Because they focus on the probability of something happening instead of the interface by which it can be managed.
-
-
Good nuggets however wants no risk
- De Tim Everist en 10-22-21
De: General Stanley McChrystal, y otros
-
The Art of Attack
- Attacker Mindset for Security Professionals
- De: Maxie Reynolds
- Narrado por: Stephanie Dillard
- Duración: 9 h y 50 m
- Versión completa
-
General
-
Narración:
-
Historia
In The Art of Attack: Attacker Mindset for Security Professionals, Maxie Reynolds untangles the threads of a useful, sometimes dangerous, mentality. The book shows ethical hackers, social engineers, and pentesters what an attacker mindset is and how to and how to use it to their advantage.
-
-
A Chess game to win
- De Anonymous User en 10-19-22
De: Maxie Reynolds
-
The Threat Intelligence Handbook
- A Practical Guide for Security Teams to Unlocking the Power of Intelligence
- De: Recorded Future
- Narrado por: Chris Pace
- Duración: 2 h y 37 m
- Versión completa
-
General
-
Narración:
-
Historia
It’s easy to find descriptions of what threat intelligence is. But it’s harder to learn how to use it to truly make your organization safe from cybercriminals. How can threat intelligence strengthen all the teams in a cybersecurity organization? This audiobook answers this question. It reviews the kinds of threat intelligence that are useful to security teams and how each team can use that intelligence to solve problems and address challenges.
-
-
Basic information for starters
- De SUNIL VARKEY en 03-11-19
De: Recorded Future
-
The Tao of Open Source Intelligence
- De: Stewart K. Bertram
- Narrado por: Peter Silverleaf
- Duración: 3 h y 23 m
- Versión completa
-
General
-
Narración:
-
Historia
Accessing and using the information that's freely available online is about more than just relying on the first page of Google results. Open source intelligence (OSINT) is intelligence gathered from publically available sources and is the key to unlocking this domain for the purposes of investigation. The Tao of Open Source Intelligence provides a comprehensive guide to OSINT techniques for the investigator.
-
-
Very informative
- De Techdice en 02-13-22
-
The ChatGPT Advantage
- Transform Your Business with Artificial Intelligence
- De: Diana Sterling
- Narrado por: Vicky David
- Duración: 12 h y 33 m
- Versión completa
-
General
-
Narración:
-
Historia
Introducing the definitive guide to AI business transformation, The ChatGPT Advantage: Transform Your Business with Artificial Intelligence. This exclusive guide is more than audiobook—it's your ultimate roadmap to the AI-driven future of business. Discover a trove of actionable insights, practical advice, case studies, and step-by-step tutorials that will prepare your company for unparalleled success in the age of AI.
-
-
Total, unmitigated buzzword porn
- De Kyle Woolard en 11-14-23
De: Diana Sterling
-
Association Management Excellence
- Become an Expert by Preparing for the CAE EXAM
- De: D.A. Abrams
- Narrado por: Jack Chekijian
- Duración: 5 h y 12 m
- Versión completa
-
General
-
Narración:
-
Historia
The CAE certificate is one of the most selective and unique credentials in business today. There are, in fact, only 4,000 Certified Association Executives, a mere 2.5% of all professionals managing associations and non-profit organizations. If you aspire to become one of them, it's an excellent ambition. I'd like to help you succeed.
-
-
Great study guide
- De Shaina S en 06-10-20
De: D.A. Abrams
-
Certified Association Executive Exam
- Strategies for Study & Success
- De: D. A. Abrams
- Narrado por: Jack Chekijian
- Duración: 4 h y 1 m
- Versión completa
-
General
-
Narración:
-
Historia
This book is designed to do three things. First, it seeks to explain the CAE certification and its many benefits, in the hopes that you will join me in preparing for and attaining this credential. Second, it will provide a step-by-step process for preparing for the CAE examination, strategically and comprehensively. Third, it sets out to explain how to ready yourself for the test itself, and to offer specific recommendations and solid tactics for approaching it, so that you achieve your objective and complete it, successfully and with ease.
De: D. A. Abrams
-
Accelerate: Building and Scaling High Performing Technology Organizations
- De: Nicole Forsgren PhD, Jez Humble, Gene Kim
- Narrado por: Nicole Forsgren
- Duración: 4 h y 58 m
- Versión completa
-
General
-
Narración:
-
Historia
How can we apply technology to drive business value? For years we've been told that the performance of software delivery teams doesn't matter - that it can't provide a competitive advantage to our companies. Through four years of groundbreaking research to include data collected from the State of DevOps reports conducted with Puppet, Dr. Nicole Forsgren, Jez Humble, and Gene Kim set out to find a way to measure software delivery performance - and what drives it - using rigorous statistical methods.
-
-
Only if you have nothing else to do
- De Gvido en 07-24-18
De: Nicole Forsgren PhD, y otros
-
The Online Business Academy for AI
- A Modernized Artificial Intelligence Guide for Beginners to Create New Ideas, Improve, and Maximize Productivity with Professional Content and Copy That Sells
- De: Thomas Bourne
- Narrado por: Juanelle Louise Holl
- Duración: 6 h y 11 m
- Versión completa
-
General
-
Narración:
-
Historia
Is AI something you’ve heard a lot about but you literally have zero ideas on how to even get started with it? If you want to make moves in the world of business and start bringing in 10 times as more money to your online business, everyone will tell you to use AI. You’ll also be sold the AI dream if you say you want to progress in your career faster than your rivals and find a new way to cruise through your to-do list while making it look easy.
-
-
VERY basic and repetitive
- De AndrewRez en 12-24-23
De: Thomas Bourne
-
The DevOps Handbook, Second Edition
- How to Create World-Class Agility, Reliability, & Security in Technology Organizations
- De: Gene Kim, Jez Humble, Patrick Debois, y otros
- Narrado por: Ron Butler
- Duración: 15 h y 51 m
- Versión completa
-
General
-
Narración:
-
Historia
This award-winning and best-selling business handbook for digital transformation is now fully updated and expanded with the latest research and new case studies! Over the last five years, The DevOps Handbook has been the definitive guide for taking the successes laid out in the best-selling The Phoenix Project and applying them in any organization. Now, with this fully updated and expanded edition, it’s time to take DevOps out of the IT department and apply it across the full business.
-
-
Atrocious
- De Anonymous User en 05-25-22
De: Gene Kim, y otros