Doesn risk assessment just lead to more and more security requirements, most of which aren necessary?
No. When done properly, it should identify the measures that are needed to effectively reduce risk that is unacceptable and no further. It is important to remember that risk assessment can show you unit’s information assets are adequately secured with the measures you already have in place, and no more need be done.
Related Questions
- What are the three NPSG requirements for suicide risk assessment policy regarding hospitals with psychiatric units?
- Doesn risk assessment just lead to more and more security requirements, most of which aren necessary?
- Doesn’t risk assessment just lead to more and more safety measures - most of which aren’t necessary?