Part 2: Organizational Governance, Three Lines of Defense, and Ethical Risk Management

In this part, you will get an understanding of organizational governance and how organizational culture affects risk, and learn about the importance of asset management. In addition, you will learn how the three lines of defense fit into cybersecurity, how to differentiate between risk appetite and risk tolerance, and how ethics and culture affect IT risk.

This part has the following chapters:

  • Chapter 3, Organizational Governance, Policies, and Risk Management
  • Chapter 4, The Three Lines of Defense and Cybersecurity
  • Chapter 5, Legal Requirements and the Ethics of Risk Management

Get ISACA Certified in Risk and Information Systems Control (CRISC®) Exam Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.