|
|
IT RM functional administrator
|
IT GRC Manager
|
|
Establishes the application inventory
|
X
|
|
|
Establishes the inventory for threats and vulnerabilities
|
X
|
X
|
|
Identifies the vulnerabilities for each asset
|
X
|
X
|
|
Identifies and assess risks linked to IT assets
|
X
|
X
|
|
Identifying Risk Scenarios
|
X
|
X
|
|
Defining Action Plans for Improvement Purposes
See "Treating risks".
|
X
|
X
|
|
|
IT RM functional administrator
|
IT GRC Manager
|
|
Identifies controls
|
X
|
X
|
|
Assesses the efficiency of controls
|
X
|
X
|
|
|
IT RM functional administrator
|
IT GRC Manager
|
|
Establishes the inventories for vendors and publishers
See "Vendor Inventory".
|
X
|
|
|
Specifies the annual amount of purchasing
|
X
|
X
|
|
Assesses the vendors (attributes a score)
See "Assessing Vendors".
|
X
|
X
|