Most recent
ASIS ESRM-2019
Enterprise Security Risk Management Guideline
This Guideline describes the enterprise security risk management (ESRM) approach and explains how it can enhance a security program while aligning security resources with organizational strategy to manage risk. Utilizing ESRM, security professionals work with asset owners to identify and prioritize assets and risks in order to mitigate those risks and create a holistic security program that supports the organization’s mission.
ASIS International [asis]