Three simple rules of risk management (2024)

Opinion

Oct 23, 20093 mins

DLP SoftwareRisk ManagementSecurity

* Knowledge of risk factors goes a long way in protecting data

Chris Sullivan, Courion’s vice president of customer solutions, recently posted a blog entry about risk management. In it he quotes Warren Buffett, the world’s richest man and undisputed king of practical risk management who once said, “Risk comes from not knowing what you’re doing.”

Chris Sullivan, Courion’s vice president of customer solutions, recently posted a blog entry about risk management. In it he quotes Warren Buffett, the world’s richest man and undisputed king of practical risk management who once said, “Risk comes from not knowing what you’re doing.”

While that’s a bit trite for my taste it is, nevertheless, worth remembering. Just as long as you know that the converse isn’t true: knowing what you’re doing does not remove the risk. Knowing what you’re doing can help mitigate, or alleviate, the risk but it rarely removes all of the risk. Still, it’s important enough that we could say the first rule of risk management is: Know what you are doing.

If you know, for example, that you are loading people’s names, ID numbers (Social Security, national health, credit card and so on) and other information as clear text to a laptop computer (or, probably worse, to a memory stick) then logically you should realize that the risk of releasing that data into the wild is very great. That would be rule No. 2: Know the risk involved with what you are doing.

Once you are aware of the risk involved you would — hopefully — take steps to reduce the risk such as encrypting the data or, even better, not taking it outside of the firewall. There’s rule No. 3: Take steps to remove as much risk as possible.

As Sullivan says about the Buffett quote: “How simple is that? You can have all of the risk management frameworks that the big four can sell you but if you don’t know who has access to what, you can’t assure access, can’t manage risk and you can’t assert compliance to virtually any regulations. Hell, you don’t even know what access to remove when someone leaves your company.”

It’s not rocket science, and it can be very simple as long as you remember the three rules:

1. Know what you are doing.

2. Know the risk involved.

3. Remove as much risk as possible.

Obviously, there’s a lot more to risk management than that but by simply following those three simple rules many, if not most, data breaches and leaks of the past few years could have been avoided.

UPDATE: Last week I mentioned the new functionality of Oracle’s ESSO client. Now a little bird tells me that this is little more than a re-branding of Passlogix’ v-GO On Demand Edition. So you have a choice.

Related content

NEWSLETTERS

Newsletter Promo Module Test

Description for newsletter promo module.

Three simple rules of risk management (2024)
Top Articles
YubiKey, U2F Tracking Bluetooth Maturity
Yu-Gi-Oh! Master Duel best starter deck for beginners and advanced players
Poe T4 Aisling
Somboun Asian Market
Rek Funerals
Bucks County Job Requisitions
Free VIN Decoder Online | Decode any VIN
The Idol - watch tv show streaming online
Fototour verlassener Fliegerhorst Schönwald [Lost Place Brandenburg]
Kent And Pelczar Obituaries
Campaign Homecoming Queen Posters
Local Collector Buying Old Motorcycles Z1 KZ900 KZ 900 KZ1000 Kawasaki - wanted - by dealer - sale - craigslist
Lake Nockamixon Fishing Report
Dignity Nfuse
Cyndaquil Gen 4 Learnset
Soccer Zone Discount Code
Spergo Net Worth 2022
Swgoh Turn Meter Reduction Teams
Saatva Memory Foam Hybrid mattress review 2024
Nordstrom Rack Glendale Photos
Halo Worth Animal Jam
Breckie Hill Mega Link
Marion City Wide Garage Sale 2023
Lost Pizza Nutrition
Lexus Credit Card Login
Craig Woolard Net Worth
Is Light Raid Hard
Cowboy Pozisyon
Sensual Massage Grand Rapids
Delta Math Login With Google
Wells Fargo Bank Florida Locations
Pixel Combat Unblocked
Warren County Skyward
Solarmovie Ma
Gideon Nicole Riddley Read Online Free
Craigslist Neworleans
Colorado Parks And Wildlife Reissue List
Pillowtalk Podcast Interview Turns Into 3Some
The Vélodrome d'Hiver (Vél d'Hiv) Roundup
Emerge Ortho Kronos
Body Surface Area (BSA) Calculator
Craigslist Freeport Illinois
Lake Andes Buy Sell Trade
Lyndie Irons And Pat Tenore
13 Fun & Best Things to Do in Hurricane, Utah
Kenner And Stevens Funeral Home
How to Connect Jabra Earbuds to an iPhone | Decortweaks
Dicks Mear Me
Theater X Orange Heights Florida
Naughty Natt Farting
Ff14 Palebloom Kudzu Cloth
Famous Dave's BBQ Catering, BBQ Catering Packages, Handcrafted Catering, Famous Dave's | Famous Dave's BBQ Restaurant
Latest Posts
Article information

Author: Saturnina Altenwerth DVM

Last Updated:

Views: 5889

Rating: 4.3 / 5 (64 voted)

Reviews: 87% of readers found this page helpful

Author information

Name: Saturnina Altenwerth DVM

Birthday: 1992-08-21

Address: Apt. 237 662 Haag Mills, East Verenaport, MO 57071-5493

Phone: +331850833384

Job: District Real-Estate Architect

Hobby: Skateboarding, Taxidermy, Air sports, Painting, Knife making, Letterboxing, Inline skating

Introduction: My name is Saturnina Altenwerth DVM, I am a witty, perfect, combative, beautiful, determined, fancy, determined person who loves writing and wants to share my knowledge and understanding with you.