Information Security Risk Assessment:
Practices of Leading Organizations (Exposure Draft)
AIMD-99-139, Aug 1, 1999
GAO published a guide to aid federal managers in implementing an ongoing information security risk assessment process. GAO provided case studies of practical risk assessment procedures that have been successfully adopted by four organizations known for their efforts to implement good risk assessment practices.