In this book, we change the perspective on an organizations operational resilience capabilities so that it changes from being a reactive (tick box) approach to being proactive. The perspectives of every chapter in this book are with a focus on risk profiles and how your business can reduce these profiles using effective mitigation measures.
The importance of businesses being operationally resilient is becoming increasingly important, and a driving force behind whether an organization can ensure that its valuable business operations can bounce back from or manage to evade impactful occurrences is its security risk management capabilities.
In this book, we change the perspective on an organizations operational resilience capabilities so that it shifts from being a reactive (tick box) approach to being proactive. The perspectives of every chapter in this book focus on risk profiles and how your business can reduce these profiles using effective mitigation measures.
The book is divided into two sections:
1. Security Risk Management (SRM).
All the components of security risk management contribute to your organizations operational resilience capabilities, to help reduce your risks.
Reduce the probability/ likelihood.
2. Survive to Operate.
If your SRM capabilities fail your organization, these are the components that are needed to allow you to quickly bounce back.
Reduce the severity/ impact.
Rather than looking at this from an operational resilience compliance capabilities aspect, we have written these to be agnostic of any specific operational resilience framework (e.g., CERT RMM, ISO 22316, SP 800- 160 Vol. 2 Rev. 1, etc.), with the idea of looking at operational resilience through a risk management lens instead.&lå