PCI-DSS-DOC-12-2 Risk Assessment and Mitigation Process

Page 21

Risk Assessment and Mitigation Process [Insert classification]

3 Conclusion The process of risk assessment and mitigation is fundamental to ensure the protection and integrity of the organization’s information. Only by fully understanding its risks can an organization hope to ensure that the controls it has in place are enough to provide an appropriate level of protection against information security threats. For a cloud service provider, the regular assessment of risks and the application of comprehensive controls is vital to the continuing confidence of its cloud service customers and in meeting its obligations to protect cardholder data and personally identifiable information from all-too-common threats. By following this process [Organization Name] will go some way to ensuring that the risks that it faces in the day-to-day operation of its business are effectively managed and controlled.

Version 1

Page 21 of 21

[Insert date]


Turn static files into dynamic content formats.

Create a flipbook
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.
PCI-DSS-DOC-12-2 Risk Assessment and Mitigation Process by CertiKit Limited - Issuu