Risk in Information Systems (IS)

What is risk?

The possibility of having negative impact.

Why do we take risk?

Thinking of having positive impact.

Elements of risk


Types of threats are:

  • Natural disaster

  • Man-made threats

    • Internal

    • External

Internal threats have the possibility of being of higher impact to the organization.

  • Technical


Measure of damage.

Quality measures can be:

  1. Negligible

  2. Minor

  3. Moderate

  4. Serious

  5. Major


Likelihood of having risk:

  1. Very unlikely

  2. Unlikely

  3. Possible

  4. Likely

  5. Probable

Last updated