RISK MANAGEMENT: Transitioning from security awareness to a risk-conscious enterprise.
Every choice that organization makes explicitly or implicitly requires risk management. From day-today operational decisions requier dealing with risk while making choices is a part of decision-making. However, a cultural change is required to achieve enterprise-wide understanding of risk. This document provides an overview of risk management frameworks and briefly describes how the requiered transition can be achived. This transition from security awareness to a risk-conscious culture eventually creates a qualitative change in the organization’s security posture.