Is there a default assets grouping in order to perform Information Security Risk Assessment?
I am working on the implementation of an ISMS and aiming to get 27001 certification. While i was conducting the Risk Assessment, I found it difficult to match all those assets/asset components with all the threats/threat events without mak… Continue reading Is there a default assets grouping in order to perform Information Security Risk Assessment?