This lesson covers the IT Risk Identification Agenda which consists of the following: - Identify relevant standards and frameworks and practices - Apply risk identification techniques - Distinguish between threats and vulnerabilities - Identify relevant stakeholders - Discuss risk scenario development tools and techniques - Key risk management concepts - Risk registers - Risk awareness This lesson also covers the underlying principles of risk management including ISO 27005 and also touches upon what a risk management program should be, the common threat that is malware, rogue infrastructure, attacks on information as well as common risk registers.

It is defined as the forecasting and evaluation of risks together with the identification of procedures to avoid or minimize their impact

