Searching CertSprout…
Searching CertSprout…
A little curiosity goes a long way
Search certifications, learning topics, career paths, public profiles and help across CertSprout.
Showing 20 results · Page 6 for “risk”. More results are available below.
CISM · Risk assessment and treatment
Risk combines the possibility of an unwanted event with its consequences for an objective. Identify the asset, threat and conditions before choosing a response. Controls may reduce likelihoo…
CISSP · Risk assessment and treatment
Risk combines the possibility of an unwanted event with its consequences for an objective. Identify the asset, threat and conditions before choosing a response. Controls may reduce likelihoo…
CITP · Technology governance
…rection. Useful measures connect delivery to benefits, risk and resource use. A technically successful project can still disappoint if nobody owns the expected business outcome or checks whe…
CND · Risk assessment and treatment
Risk combines the possibility of an unwanted event with its consequences for an objective. Identify the asset, threat and conditions before choosing a response. Controls may reduce likelihoo…
CNVP · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CNVP · Vulnerability management
…everity but does not fully describe the organization's risk. Add asset importance, reachability, exploitation evidence and existing controls to the decision. Assign remediation and verify th…
CPENT · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CREST-CCT-APP · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CREST-CCT-INF · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CREST-CPSA · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CREST-CRT · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CRISC · Assurance and evidence
An audit evaluates evidence against defined criteria. A written policy demonstrates intended behavior; it does not prove people followed it. Select records, observations or samples that addr…
CRISC · Cloud governance and cost
Cloud governance connects resource decisions to business ownership, access rules and spending controls. Consistent tags and accounts help identify who should respond to a cost increase or un…
CRISC · Risk assessment and treatment
Risk combines the possibility of an unwanted event with its consequences for an objective. Identify the asset, threat and conditions before choosing a response. Controls may reduce likelihoo…
CRTE · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CRTM · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CRTO · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CRTP · Security findings and communication
… to verify it. Severity should follow the demonstrated risk, not the dramatic wording of the title. Worked example A security report lists a technical weakness without explaining consequence…
CSCU · Risk assessment and treatment
Risk combines the possibility of an unwanted event with its consequences for an objective. Identify the asset, threat and conditions before choosing a response. Controls may reduce likelihoo…
CSOM · Technology governance
…rection. Useful measures connect delivery to benefits, risk and resource use. A technically successful project can still disappoint if nobody owns the expected business outcome or checks whe…
People search uses public names, handles and headlines. Private and unlisted profiles are excluded. Your goals are visible only to you in search.