IT / Information Security Risk Management With Examples

This lecture is the part one of series for the IT / Information Security Risk Management.
The video is good for students preparing for exams and interviews.
The video covers the following topics:
- Risk Management
- Risk Assessment
- Risk Treatment
- Asset / Process Based Risk Assessment
- Qualitative, Quantitative and Semi Quantitative Risk Assessment / Management;
- And the definitions to understand these areas.

Пікірлер: 76

  • @vback4238
    @vback4238Ай бұрын

    Watching it again and it even got better!

  • @adedejiyesufu1451
    @adedejiyesufu1451 Жыл бұрын

    Thank you, extremely helpful

  • @waqasabro9855
    @waqasabro98553 жыл бұрын

    Nice initiative Ali.. 👍😇

  • @vback4238
    @vback4238Ай бұрын

    Excellent job!! You are great!

  • @aliqureshi2227

    @aliqureshi2227

    Ай бұрын

    Thank you very much!

  • @x8EchoslaM8x
    @x8EchoslaM8x3 жыл бұрын

    Thank you for your time and effort at creating this. Good job. Keep it up. I learned something new too.

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you very much. I really appreciate it.

  • @esmatullahsaidy4037
    @esmatullahsaidy403710 ай бұрын

    You put everything in order and the explanation was so comprehensive

  • @aliqureshi2227

    @aliqureshi2227

    10 ай бұрын

    Thank you very much for your kind feedback

  • @adilaziz6778
    @adilaziz67782 жыл бұрын

    Excellent content for beginners. Thank you for your effort

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thank you very much Adil.

  • @achajackson5898
    @achajackson589811 ай бұрын

    I’m an info sec risk analyst for my bank. This is great resource!!

  • @aliqureshi2227

    @aliqureshi2227

    11 ай бұрын

    Thank you very much. Really appreciate it!

  • @kestere9862
    @kestere98623 жыл бұрын

    Excellent delivery. Thank you.

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you very much Kester. I really appreciate it.

  • @AhmedAbrahan
    @AhmedAbrahan2 жыл бұрын

    I will be joining as a Information Security Risk Analyst next month. This will help me prepare. Thank you.

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    It definitely will. Do let me know on what other topics you would like to hear me on.

  • @ramganesh6027
    @ramganesh6027 Жыл бұрын

    One of the excellent and crisp explanations that I have seen so far. Thank You so much!

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you @ramganesh

  • @javedakhter82
    @javedakhter822 жыл бұрын

    Very easy understanding. Thanks for such working.

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thank you very much Javed! Really appreciate it.

  • @asankadhananjaya8431
    @asankadhananjaya8431 Жыл бұрын

    Wow…. Great explanation and well organized. 👏👏👏

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you very much Asanka!

  • @MatiniSanni
    @MatiniSanni11 ай бұрын

    Great information Ali. I like how you structure and explained the concepts. Keep up the good work!

  • @aliqureshi2227

    @aliqureshi2227

    11 ай бұрын

    Thank you very much!

  • @calvinworst
    @calvinworstАй бұрын

    Here are the learning outcomes for anyone who needs them (they're all listed at 27:59) What is Risk? Why do we need risk management What is risk management? What is risk assessment? What is risk treatment? What is likelihood, impact, inherent and residual risk? Difference between threat, vulnerability and risk. Difference between asset owner and asset custodian. Difference between risk management and risk assessment. Difference between quantitative, qualitative, and semi-quantitative risk management. The Risk Management Process.

  • @OneWorld234
    @OneWorld2343 жыл бұрын

    Very concise and informative.

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you very much Kaleem!

  • @ahmedaliareeb8783
    @ahmedaliareeb87832 жыл бұрын

    It was informative, Ali! Thanks for the video

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thank you very much Ahmed. Really appreciate it.

  • @rruth9098
    @rruth90982 жыл бұрын

    This is a great overview.

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you

  • @mamtakrishna2901
    @mamtakrishna2901 Жыл бұрын

    Quite helpful and interesting, thank you

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you very much Mamta!

  • @rohizzcool
    @rohizzcool2 жыл бұрын

    very good work..appreciate it

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thanks Rohit

  • @mayankraj2806
    @mayankraj2806 Жыл бұрын

    Very good content. Thanks for sharing this

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you for your feedback @mayankraj2806. Really appreciate it

  • @ziyadalvi2094
    @ziyadalvi20943 жыл бұрын

    Keep up the good work ❤️

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you Ziyad!

  • @nihalshah4113
    @nihalshah41136 ай бұрын

    Hi Ali Would be very helpful if you can provide a link to the actual slide deck itself. Great video! Thanks for the explanation!

  • @ramamohangadiyaram9004
    @ramamohangadiyaram90049 ай бұрын

    Excellent Mr Ali!!

  • @aliqureshi2227

    @aliqureshi2227

    9 ай бұрын

    Thank you very much Ram!

  • @TheKnowledgeGateway498
    @TheKnowledgeGateway4983 жыл бұрын

    Good one.

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you!

  • @sanjai4685
    @sanjai468529 күн бұрын

    👌🏻❤

  • @jasondudko3968
    @jasondudko39688 ай бұрын

    Thank you

  • @aliqureshi2227

    @aliqureshi2227

    8 ай бұрын

    You're welcome Jason.

  • @ihammads
    @ihammads7 ай бұрын

    good video, Thank you! but need to learn, how to implement this as well :)

  • @aliqureshi2227

    @aliqureshi2227

    7 ай бұрын

    Thank you and best of luck ☺️

  • @tanaysamanta4730
    @tanaysamanta47302 жыл бұрын

    Nice !

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thanks 🙏

  • @ras403
    @ras4032 жыл бұрын

    An excellent way of teaching. Thanks. In video while defining, residual risk = inherent risk - control value However, in overview of risk management process, residual risk = inherent risk divided by control value Which one is right?

  • @aliqureshi2227

    @aliqureshi2227

    2 жыл бұрын

    Thank you very much. I would recommend to use division as it leads to a reasonable residual risk value.

  • @bala007raju
    @bala007raju3 жыл бұрын

    Thanks for the session , I guess in 18:01 , it should be NIST SP 800-30 in place of NIST SP 800-50 .

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Thank you! and Absolutely. Apologies from my end. Will manage the rectification.

  • @phathiswabam2630
    @phathiswabam26303 жыл бұрын

    Thank you very much for this video. It came very handy. Would you be able to recommend the academic journals within IT Security Risk Assessment that I could refer to for my literature review? That will be much appreciated.

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    Hi Phathiswa! Thank you for your kind words. It was encouraging. My apologies, I am no aware about any specific academic journals within the domain. But you can always refer to standardizing bodies and international platforms like SANS for the same.

  • @phathiswabam2630

    @phathiswabam2630

    3 жыл бұрын

    @@aliqureshi2227 so much appreciated Ali. I found something I could use by U Kumar plus the standards. Have a blessed new year 🙏

  • @sandrapink17
    @sandrapink17 Жыл бұрын

    Great

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thank you

  • @tejaswiniaradhya3008
    @tejaswiniaradhya300810 ай бұрын

    Are we not considering the process value/asset value for risk score calculation?

  • @aliqureshi2227

    @aliqureshi2227

    10 ай бұрын

    Thank you very much for bringing this up. Yes, in this video the asset valuation is not discussed in specific however, theoretically just in the context of this content, consider it be part of asset identification.

  • @tausefkhan
    @tausefkhan Жыл бұрын

    Thank you for the informative information. Do you have a default template to use?

  • @aliqureshi2227

    @aliqureshi2227

    Жыл бұрын

    Thanks Tausef. Unfortunately, no.

  • @paraskhullar3660
    @paraskhullar36602 жыл бұрын

    Hello, i will a writing assignment about information security, security risks, security control, and the application of risk control and risk measures. So, can you help me like you make video as well as notes on it. Please help me.

  • @thiyagusathyathiyagaraja512
    @thiyagusathyathiyagaraja5122 жыл бұрын

    If u a notes please send it

  • @lokanathmuduli6347
    @lokanathmuduli63476 ай бұрын

    What is the meaning of waiver and Derogation? in risk treatment.

  • @aliqureshi2227

    @aliqureshi2227

    6 ай бұрын

    Waiver and derogation are just literal jargon. Both of them are related to risk acceptance. Waiver is where management allows you to allow a particular risk open as untreated. Same story is with derogation. The real deal is that what constitutes such waivers and derogation? - If the risk levels are low? If risk likelihood is high but impact is low? Or the benefit realized from a particular thing is far greater in value than the impact of the risk?

  • @TVVDINAKARAN
    @TVVDINAKARAN3 жыл бұрын

    @16:45

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    I am sorry. Can you please translate that in to English if that is a question?

  • @TVVDINAKARAN

    @TVVDINAKARAN

    3 жыл бұрын

    @@aliqureshi2227 Oops sorry mate i marked the timeline for my purpose So that i can resume the video later from where i left it off

  • @aliqureshi2227

    @aliqureshi2227

    3 жыл бұрын

    @@TVVDINAKARAN No problem! :)

  • @user-cd7po8pp9p
    @user-cd7po8pp9p2 жыл бұрын

    انت مين

  • @user-cd7po8pp9p
    @user-cd7po8pp9p2 жыл бұрын

    النبي عربي ياعلوه