Skip to content
BOL Conferences
Learn More - Click Here!

Thread Options
#2081566 - 06/02/16 06:39 PM Cyber/Information Security Risk Appetite Statement
JamesH Offline
Member
Joined: Jun 2008
Posts: 52
Along with the CAT Tool, part of the FFIEC's Cyber initiative calls for banks to develop a Cyber or Information Security "Risk Appetite Statement" with in their respective Information Security Program. Does anyone have one to share?

James

Return to Top
Operations Compliance
#2081610 - 06/02/16 08:55 PM Re: Cyber/Information Security Risk Appetite Statement JamesH
SeekingKnowledge Offline
100 Club
SeekingKnowledge
Joined: Jun 2014
Posts: 152
SC

Return to Top
#2083887 - 06/16/16 08:33 PM Re: Cyber/Information Security Risk Appetite Statement JamesH
JamesH Offline
Member
Joined: Jun 2008
Posts: 52
No kidding. It could easily fit into different areas. Feel free to think about it. It surprises me that no one has done this already.
This is not the same as completing a risk assessment and saying,... "whatever our residual risk is, that's our cyber risk appetite statement".

Return to Top

Moderator:  Andy_Z, John Burnett