ABSTRACT

This chapter discusses risk, risk analysis, and risk evaluation in general terms but seen in relation to information security. The purpose is to give an overview over the process in general terms and provide guidance on how this is performed, irrespective of the methods chosen.