Skip to content

Conversation

@vbakke
Copy link

@vbakke vbakke commented Jan 26, 2025

Just a minor suggestion to include asking the management about their risk appetite.

This question gives a slightly different approach to the conversation: It's a mindset that the management is familiar with (hopefully), and it give the security consultant the understanding of what risk is considered acceptable for this organization, and what is not.

I picked this up on the NDC Security 2023 conference.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants