Residual risk is the risk that remains after applying controls to mitigate the original risk. It is important to assess the residual risk after remediation to ensure that it is within the acceptable level and tolerance of the organization. (From CISM Review Manual 15th Edition)
[References: CISM Review Manual 15th Edition, page 181, section 4.3.2.4., , , , , , , ]
Submit