Information Security Risk Management for ISO27001 / ISO27002
The State of California has adopted ISO/IEC 27002 as its standard for information security and recommends other organizations and vendors to use this standard as guidance in their efforts to comply with California law.
To achieve an ongoing compliance, major organizations require tools to comply with standard such as ISO 27002/ISO27001. vsRisk is an easy to use Information Security Risk Assessment tool which makes risk assessment process consistent, easier and produces required documentation to achieve ISO 27001 certification . vsRisk also aligns seamlessly with standards like ISO 27002, ISO 27005 and NIST SP 800-30.
vsRisk helps organizations to develop an Information Security Management System (ISMS) asset inventory and capture business, legal and contractual requirements against each asset. vsRisk is customizable to meet specific needs when introducing new risks, vulnerabilities and controls without any additional help from a consultant. vsRisk helps you focus on assets rather than on threats and vulnerabilities. This is an approach which works by treating business processes as an asset, which is examined for their criticality, lack of security and consequences of failed process can be examined. In this regards, vsRisk is an effective and efficient tool by identifying most important points and key issues right away, which focusing on threats doesnāt.
Major benefits of vsRisk tool:
1. It is the definitive ISO27001 risk assessment tool, compliant
with all the key information security standards – which means that
you can be certain that a vsRisk risk assessment will help you
achieve ISO27001 certification.
2. It is designed to be usable – your lead risk assessor and any
asset owners involved in your risk assessment are going to find
their task made easier
3. Unique features include the risk assessment wizard, which
standardizes the risk assessment process and guides asset owners
through the risk assessment process.
4. vsRisk creates a baseline from which future risk assessments can
easily be made.
5. vsRisk integrates with ISMS documentation toolkit, for even
greater usability.
āvsRiskā¢- the Definitive ISO 27001: 2005-Compliant Information Security Risk Assessment Tool, which automates and delivers an ISO/IEC 27001-compliant risk assessment and can assess confidentiality, integrity and availability for each of business, legal and contractual aspects of information assets – as required by ISO 27001. Providing a comprehensive best-practice alignment, it supports ISO 27001 and 27002 (ISO/IEC 17799) disciplines, and is ISO/IEC 27005 and NIST SP 800-30 compliant. It also offers a wizard-based approach that simplifies and accelerates the risk assessment process, plus integrates and regularly updates BS7799-3 compliant threat and vulnerability databases.ā
The key to successful Risk Management is to protect your most important/critical assets. The importance/criticality of an asset might change over time. That is another reason to automate security risk assessment process to recalibrate your risks based on current state of security.
Risk Management to ISO27001/NIST Wizard-based risk assessment tool Simplifies compliance – To buy vsRisk tool!
Meet Stringent California Information Security Legislation with Comprehensive Toolkit
ISO27001 EXPERTS CAN HELP COMPANIES MEET STRINGENT CALIFORNIAN …
EIN News (press release) – Netherlands
vsRiskā¢- the Definitive ISO 27001: 2005-Compliant Information Security Risk Assessment Tool, which automates and delivers an ISO/IEC 27001-compliant risk …



October 12th, 2008 4:32 am
Š”ŠŗŠ°Š¶ŠøŃŠµ, гГе Š½Š°Š¹ŃŠø Ń Š¾Š·ŃŠøŠ½Š° blog.deurainfosec.com.
Š” Š¼ŠµŠ½Ń ŠæŃŠ²Š¾)
———
ŠŠ½ŃŠµŃŠµŃŠ½ŃŠµ ŃŠ°ŠŗŃŃ
October 29th, 2008 4:06 am
ŠŠ“ŃŠ°Š²ŃŃŠ²ŃŠ¹ŃŠµ!
ŠŠµŠ¾Š±Ń оГимо ŃŠ“елаŃŃ ŃŠ°Š¹Ń. ФоŃŃŠ¼Ń, ŃŠ°ŃŃ Šø ŃŠ¾Š¼Ń поГобное не Š½Ńжно. ЄоŃŃ ŠæŠ¾Š»ŃŃŠøŃŃ ŠŗŠ°ŃŠµŃŃŠ²ŠµŠ½Š½ŃŃ Š²ŃŃŃŃŠŗŃ, именно ŠŗŠ°ŃеŃŃŠ²ŠµŠ½Š½ŃŃ, а ŃŠ¾ в Š“ŃŠøŠ¼Š²ŠøŠ²ŠµŃе Šø ŃŠ°Š¼Š° могŃ. ŠŠøŠ·Š°Š¹Š½ Š³Š¾ŃŠ¾Š², а оŃŃŠ°Š»Ńное за вами.
ŠŃŠµŠ½Ń Ń Š¾ŃŠµŠ»Š¾ŃŃ Š±Ń ŃŃŠ»ŃŃŠ°ŃŃ ŠæŠ°ŃŃ Š“ŠµŠ»ŃŠ½ŃŃ ŃŠ¾Š²ŠµŃов о ŃŠ¾Š¼, какой коГ Š²ŃŠ±ŃаŃŃ, гГе Š»ŃŃŃŠµ ŃŠµŠ³ŠøŃŃ Š“Š¾Š¼ŠµŠ½ Šø ŃŠ°Šŗ Галее…
Š±ŃŠ“Š¶ŠµŃ = около 150 – 200 Голл.
November 13th, 2008 5:27 pm
As it seems to me, article actual for today. I wish the author of a blog to publish more interesting articles!
January 14th, 2011 11:00 am
[…] vsRisk and security risk assessment […]
May 24th, 2011 4:13 am
I really appreciate your post and you explain each and every point very well.Thanks for sharing this information.And Iāll love to read your next post too.
Regards:
NABH
February 27th, 2019 1:40 pm
[…] vsRisk and security risk assessment (deurainfosec.com) […]