Computer and Information Security

Resources: Ch. 53 of Computer and Information Security and Ch. 3 of Fundamentals of Information Systems Security


Read the scenario located in the University of Phoenix Material: Risk Assessment.


Prepare a 350 to 430-word risk assessment paper, based on the instructions contained in the University of Phoenix Material: Risk Assessment.


University of Phoenix Material




Risk Assessment




You have recently assumed the role of the chief security officer for the information technology (IT) department of a major organization. One of your new responsibilities is to conduct an assessment of the threats facing your organization’s information security system. Use the risk assessment matrix below to complete the assignment.




A risk assessment matrix is a grid that is used during risk assessment to define various levels of risk as the sum of the likelihood a threat occurs and the impact to the organization. This is a simple mechanism to increase visibility of risks and assist management decision making.




Impact to organization if asset is attacked

Likelihood of threat exploiting vulnerabilities

  0 1 2 3 4
0 0 1 2 3 4
1 1 2 3 4 5
2 2 3 4 5 6
3 3 4 5 6 7
4 4 5 6 7 8




Prepare a 350- to 430-word risk assessment paper which identifies and explains the following items:






  • The impact to the organization if the assets are attacked (use a scale of 0 to 4, with 0 the lowest impact and 4 the highest impact)
  • The likelihood that the assets can be attacked by the threat (use a scale of 0 to 4, with 0 the lowest likelihood and 4 the highest likelihood)






