Talk With an Expert

Implementing a Successful Security Assessment Process

Implementing a Successful Security Assessment Process (PDF, 1.62MB)Published: 21 Aug, 2001
Created by
Bradley Hart

The goal of a security assessment, (also known as a security audit or security review), is to ensure that necessary security controls are integrated into the design and implementation of a project. A properly completed security assessment should provide documentation outlining any security gaps between a project design and approved corporate security policies. Management can address security gaps in three ways: Management can decide to cancel the project, allocate the necessary resources to correct the security gaps, or accept the risk based on an informed risk / reward analysis.