Skip to document

Allegro Worksheet V1

Module

Network Security (CI7130)

5 Documents
Students shared 5 documents in this course
Academic year: 2020/2021
Uploaded by:
0followers
1Uploads
11upvotes

Comments

Please sign in or register to post comments.

Preview text

Allegro Worksheet RISK MEASUREMENT CRITERIA – REPUTATION AND CUSTOMER CONFIDENCE

Impact Area Low Moderate High

Reputation

Reputation is slightly affected. Ver easy to recover.

Reputation is spoiled. Lot of money and time should be spent.

Reputation is damaged very severely and cannot be restored.

Customer Loss

Less than 15% loss in customers due to loss of confidence

15 to 55% loss in customers due to loss of confidence.

More than 50% loss in customers due to loss of confidence and publicity.

Allegro Worksheet RISK MEASUREMENT CRITERIA – FINANCIAL

Impact Area Low Moderate High

Operating Costs 25% increase in yearly operating costs

Yearly operating costs increase by 25 to 50%.

Yearly operating costs increased more than 50%.

Revenue Loss Less than 20% loss in revenue

Less than 50% loss in revenue

Greater than 50% yearly revenue loss

One-Time Financial Loss

One-time financial cost of less than $ 40,

One-time financial cost of $ 40,000 to $ 200,

One-time financial cost greater than $ 250,

Allegro Worksheet RISK MEASUREMENT CRITERIA – PRODUCTIVITY

Impact Area Low Moderate High

Staff Hours

Human work hours are increased by less than 15% for 2 day(s).

Human work hours are increased between 15% and 40% for 5day(s).

Human work hours are increased by greater than 50% for 5 to 15day(s).

Allegro Worksheet RISK MEASUREMENT CRITERIA – SAFETY AND HEALTH

Impact Area Low Moderate High

Life

No damage to customers’ or staff members’ lives

Customers’ or staff members’ lives are at risk, but they will recover after receiving medication.

Damage of customers’ or staff members’ lives

Health

Minimal, immediately treatable degradation in customers’ or staff

Temporary or recoverable impairment of customers’ or staff members’ health

Permanent impairment of significant aspects of customers’ or staff

Safety Safety is questioned Safety is affected Safety is violated

Allegro Worksheet RISK MEASUREMENT CRITERIA – FINES AND LEGAL PENALTIES

Impact Area Low Moderate High

Fines Fines less than 19% are levied.

Fines between 20% and 50% are levied.

Fines greater than 50% are levied.

Lawsuits

Non-frivolous lawsuit or lawsuits less than 10% are filed against the organization, or frivolous lawsuit(s) are filed against the organization.

Non-frivolous lawsuit or lawsuits between 20% and 40% are filed against the organization.

Non-frivolous lawsuit or lawsuits greater than 50% are filed against the organization.

Investigations

No queries from government or other organizations

Government or other investigative organization requests information or records (low profile).

Government or other investigative organization initiates a high-profile, in-depth investigation into organizational practices.

Allegro Worksheet IMPACT AREA PRIORITIZATION WORKSHEET

PRIORITY IMPACT AREAS

5 Productivity 4 Financial 3 Reputation and Customer Confidence 2 Fines and Legal Penalties 1 Safety and Health

Allegro - Worksheet 10 INFORMATION ASSET RISK WORKSHEET

Information Asset Risk

Threat

Information Asset Active Directory

Area of Concern Unauthorized disclosure of Financial and person data.

(1) Actor Who would exploit the area of concern or threat?

Attacker or Competitor.

(2) Means How would the actor do it? What would they do?

Exploiting the Vulnerabilities.

(3) Motive What is the actor’s reason for doing it?

Trying to steal financial and personal information from the business or from other customers.

(4) Outcome What would be the resulting effect on the information asset?

 Disclosure  Modification

 Destruction  Interruption

(5) Security Requirements How would the information asset’s security requirements be breached?

By getting Access to the ports in the Active Directory.

(6) Probability What is the likelihood that this threat scenario could occur?

✔ High Medium Low

(7) Consequences What are the consequences to the organization or the information asset owner as a result of the outcome and breach of security requirements?

(8) Severity How severe are these consequences to the organization or asset owner by impact area?

Impact Area Value Score

Moderate Reputation & Customer

5 20

Financial 3 15

Productivity 2 5

Safety & Health 1 5

Fines & Legal Penalties

4 20

User Defined Impact Area N/A N/A

Relative Risk Score 65

Was this document helpful?

Allegro Worksheet V1

Module: Network Security (CI7130)

5 Documents
Students shared 5 documents in this course
Was this document helpful?
Allegro
Worksheet RISK MEASUREMENT CRITERIA – REPUTATION AND CUSTOMER CONFIDENCE
Impact Area Low Moderate High
Reputation
Reputation is slightly
affected. Ver easy to
recover.
Reputation is spoiled. Lot of
money and time should be
spent
Reputation is damaged
very severely and cannot
be restored.
Customer Loss
Less than 15% loss in
customers due to loss of
confidence
15 to 55% loss in
customers due to loss of
confidence
More than 50% loss in
customers due to loss of
confidence and publicity.
Allegro
Worksheet RISK MEASUREMENT CRITERIA – FINANCIAL
Impact Area Low Moderate High
Operating Costs 25% increase in yearly
operating costs
Yearly operating costs
increase by 25 to 50%.
Yearly operating costs
increased more than
50%.
Revenue Loss Less than 20% loss in
revenue
Less than 50% loss in
revenue
Greater than 50% yearly
revenue loss
One-Time
Financial Loss
One-time financial cost
of less than $ 40,000
One-time financial cost of $
40,000 to $ 200,000
One-time financial cost
greater than $ 250,000
Allegro
Worksheet RISK MEASUREMENT CRITERIA – PRODUCTIVITY
Impact Area Low Moderate High
Staff Hours
Human work hours are
increased by less than
15% for 2 day(s).
Human work hours are
increased between 15% and
40% for 5day(s).
Human work hours are
increased by greater
than 50% for 5 to
15day(s)
Allegro
Worksheet RISK MEASUREMENT CRITERIA – SAFETY AND HEALTH
Impact Area Low Moderate High
Life
No damage to
customers’ or staff
members’ lives
Customers’ or staff
members’ lives are at risk,
but they will recover after
receiving medication
Damage of customers’ or
staff members’ lives
Health
Minimal, immediately
treatable degradation
in customers’ or staff
Temporary or recoverable
impairment of customers’ or
staff members’ health
Permanent impairment
of significant aspects of
customers’ or staff