Problem
1. What is risk assessment?
2. Can risk assessment be both a tool and a technique?
3. When should managers and auditors perform risk assessment?
4. What affect does insurance have on risk?
5. How should organizations develop a so und risk management program to de termine the adequacy of their IT insurance coverage?