Blog|Login|Chinese German Japanese|Follow @imperva
July 17, 2009
 Risk Management 101
Play at your own risk Earlier I wrote about the Accenture 2009 global risk management study. Even though it focused on business risk the ideas, concepts and findings are relevant to Data Risk Management.

Specifically, I like the summary and explanation of risk management:

Effective risk management is also a matter of using the information derived from risk assessment and analysis to make better and more timely decisions. In this way risk management becomes more than just a matter of mitigation, compliance and control, as important as those processes may be. 

Risk management can become a proactive, continuous initiative focused on creating value and driving growth, not simply a reactive exercise in protecting value or guarding against failure. By optimizing both risks and rewards, companies with an effective and integrated risk management capability link risk and profitability objectives, improve strategic capital decisions and increase shareholder returns. They better coordinate risk measurement, capital allocation, performance assessment and management across the enterprise.  


Not surprising, SecureSphere Data Security Suite and specifically the DAS product were designed with that approach in mind to provide Risk Management capabilities based on data discovery and classification and vulnerability assessment scoring. 


SecureSphere DAS benefits:

  • Database platform, software, and configuration vulnerability analysis
  • Automatic network discovery of database servers
  • Comprehensive data classification by pre-defined or custom data types
  • Risk scoring for vulnerability management
  • Full upgrade path to Data Activity Monitoring, Database Firewall, or Data Security Suite

Comments

Verify your Comment

Previewing your Comment

This is only a preview. Your comment has not yet been posted.

Working...
Your comment could not be posted. Error type:
Your comment has been saved. Comments are moderated and will not appear until approved by the author. Post another comment

The letters and numbers you entered did not match the image. Please try again.

As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.

Having trouble reading this image? View an alternate.

Working...

Post a comment

Comments are moderated, and will not appear until the author has approved them.

« The Need to Overhaul Risk-Management Approach | Main | Imperva Presents WAF+VA at OWASP Bay Area Chapter Stanford University »