Symantec.com > Business > IT Risk Management Report, Volume 2

IT Risk Management Report, Volume 2

Urban Risk Legends Revealed

IT Risk — encompassing Security, Availability, Performance, and Compliance elements — is a critical issue for executives and boards of directors. In this second volume of the IT Risk Management Report, Symantec extends its analysis of IT professionals’ insights into the nature of IT Risk and the most effective ways to manage it, with added focus on Availability and Performance Risks.
This report is intended for executives with responsibilities at the intersection of IT and business risk, including CISOs and vice-presidents of Risk Management, Data Center Operations, and Compliance/Audit. Report insights are based on the collective experience of over 400 IT professionals worldwide, and Symantec’s deep expertise in every element of IT Risk Management. Critical information on key Report differences by industry, geography, control, and size of survey respondent is also provided.
Highlights
Highlights
  • Increasing emphasis on Availability and Performance Risks, to balance the Security and Compliance emphasis of the first report
  • Although IT professionals agree with consumers about the severity of Data Leakage incidents, they may underestimate their frequency: see Security Risk and data leakage in Section 2
  • IT professionals expect IT incidents to occur about once per month: see Incident rates and reactions in Section 3
  • Process issues cause 53 percent of IT incidents—most often because no process is in place to manage the incident: see The importance of process controls in Section 4
  • IT Risk Management is more than a defensive exercise—it identifies tradeoffs among risks, costs, and controls for confident, risk-aware pursuit of opportunities: see Process improvement disciplines in Section 5
Volume 1 Archive
Volume 1 Archive
IT Risk Management Report Volume 1 provided initial Symantec insights into respondent strengths and weaknesses in handling IT risks in a variety of areas. Findings were organized by process and technology controls for IT Risk Management as represented in ISO, ITIL and CobiT international standards.
Download PDF Now
IT Risk Management Blog
Featured Videos
Featured Videos

Customer's View of IT Risk Management

Symantec's Answers for IT Risk Management

A conversation between André Gold, head of IT Risk Management at ING U.S. Financial Services, and Symantec.

IT Risk Management Challenge
Take the survey and participate in next year's IT Risk Management Report. You'll receive an individualized peer benchmark report that compares your organization to others in your industry. You can either:
Complete the survey online.

Start Online

Or download the survey, then fax it to 240-238-8706 or email it to inform@symantec.com.

Download Now

Podcasts

CIO Digest Subscribe Now
Optimize IT Investments
Global Services
Executive Briefing Center