Cyber risk identification activities leverage asset inventory and prioritization information from the ASSET domain, such as IT and OT asset end of support, single points of failure, information asset risk of disclosure, tampering, or destruction
The disruption of asset productivity due to operational risk affects the ability of associated functions to meet their mission. Thus, the scope of risk assessments should focus on assets and activities whose disruption has the most potential impact on mission assurance. The asset inventory should include criteria that identifies assets that are most critical to the function.
Related Practices · Input From: Implementing ASSET-1e provides input that may be useful for implementing this practice. · Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: RISK-2a, RISK-2b, RISK-2c, RISK-2g, RISK-2h, RISK-2i, RISK-2j, RISK-2k, RISK-2l, RISK-2m.