SEC-RISK.AV1

The Security Risk Assessment Handbook

Time to level up. This security risk assessment course turns beginners into experts, one interactive lesson at a time.

  • 14 Interactive Lessons and 79 topics mapped to the official exam objectives

Intermediate Self-paced · 1 year access

14Interactive Lessons
79Topics

01 / Skills you'll get

What you will be able to do

Try Free → No credit card required

Enroll in our security risk assessment course to master the art of identifying threats, analyzing vulnerabilities, and implementing rock-solid safeguards.

In this course, dive into every phase of a professional security risk assessment, from project scoping and data gathering to risk analysis and mitigation. Learn the RIIOT method for bulletproof evaluations, dissect +200 security controls, and access interactive exercises that turn theory into action.

From small businesses to high-stakes agencies like the CIA and NATO, this training gives you the tools, frameworks, and insider techniques to assess risks like a professional. 

  • RIIOT Method: Learn to systematically gather, analyze, and report security risk data with a proven framework.
  • Threat & Vulnerability Analysis: Identify critical threats, assess vulnerabilities, and prioritize risks.
  • Risk Mitigation Strategies: Select and implement the right safeguards to reduce risk based on organizational needs.
  • Security Control Evaluation: Assess over 200+ administrative, technical, and physical controls.
  • Professional Risk Reporting: Deliver clear, actionable security reports that drive decision-making for stakeholders.
  • Real-World Risk Assessment Execution: Manage full-scale assessments from scoping to final recommendations, just as top agencies (CIA, NATO) do.

Course Highlights

  • 14 Structured Lessons Comprehensive coverage of core course objectives
  • 1 Year Full Access Self-paced learning accessible anytime on all devices

02 / Lessons & labs

See exactly what you will learn and practice

Download outline (PDF)

Lessons

14 Interactive Lessons · 79 topics
01 Introduction 8 topics
  • The Role of the Chief Information Security Officer
  • Ensuring a Quality Information Security Risk Assessment
  • Security Risk Assessment
  • Related Activities
  • The Need for This Course
  • Who Is This Course For?
  • Exercises
  • Bibliography
02 Information Security Risk Assessment Basics 8 topics
  • Phase 1: Project Definition
  • Phase 2: Project Preparation
  • Phase 3: Data Gathering
  • Phase 4: Risk Analysis
  • Phase 5: Risk Mitigation
  • Phase 6: Risk Reporting and Resolution
  • Exercises
  • Bibliography
03 Project Definition 4 topics
  • Ensuring Project Success
  • Project Description
  • Exercises
  • Bibliography
04 Security Risk Assessment Preparation 8 topics
  • Introduce the Team
  • Review Business Mission
  • Identify Critical Systems
  • Identify Asset Classes
  • Identifying Threats
  • Determine Expected Controls
  • Exercises
  • Bibliography
05 Data Gathering 6 topics
  • SIDEBAR 5.1 Data Gathering: Tools versus Experience
  • Security Control Representation
  • Evidence Depth
  • The RIIOT Method of Data Gathering
  • Exercises
  • Bibliography

03 / FAQs

Questions before you start

Contact us ↗
What are the 5 steps of security risk assessment?

The 5 key steps are:

  • Project Definition: Scope the assessment and set objectives.
  • Data Gathering: Collect security control details (administrative, technical, physical).
  • Risk Analysis: Evaluate threats, vulnerabilities, and potential impact.
  • Risk Mitigation: Recommend safeguards to reduce risk.
  • Reporting & Resolution: Deliver findings and action plans to stakeholders.

This security risk assessment training teaches the RIIOT method to execute these steps effectively.

What are the three types of security risks?

The three core types are:

  • Physical Risks: Unauthorized access, theft, or damage to hardware/facilities.
  • Technical Risks: Cyber threats (hacking, malware, data breaches).
  • Administrative Risks: Weak policies, human error, or compliance gaps.

The course covers 200+ controls across all three categories.

How do I learn risk assessment?

This cybersecurity risk management course is the fastest way to master it:

  • Step-by-step training: From basics to advanced techniques (like RIIOT FRAME).
  • Hands-on exercises: Practice with gamified practice tests, packed with performance-based questions. 
  • Proven methods: Used by CIA, NSA, and NATO.

Risk Assessment Made Simple

This Security Risk Assessment Course gives you the exact methods to identify vulnerabilities, analyze risks, and implement bulletproof safeguards.

  • 1 year of full access
  • Certificate of completion
Buy Now — $199.99 Try Free

No credit card required

scroll to top