What information should an IT system analysis provide to the risk assessor?
Management buy-in
Threat statement
Security architecture
Impact analysis
Submit