SmartESA Solution

 

FRAP - Facilitated Risk Assessment Process


The FRAP (Facilitated Risk Assessment Process) is performed to identify and assess an organizations Business and Security Risks. A summary report is generated with identified risks prioritized in a High, Medium, and Low order of importance base upon the following assessments:

  • Asset Definition

  • Ownership and Control

  • Threat Identification

  • Threats

  • Vulnerabilities

  • Impacts

  • Probability

  • Common Threat Categories

  • Natural

  • Human

  • Environmental

  • Detection and Recovery

  • Technical Controls

  • Management Controls (Policy and Procedures)

  • Preventitive Controls (Safeguards in place)

  • Operational Controls

  • Risk Mitigation

  • Cost-Benefit Analysis

  • Residual Risk

  • FRAP REPORTING