Guidelines for trust service providers - Part 2: Risk assessment

Back to all publications

Publication date:December 20, 2013

This document covers the following aspects of Trust Service Providers operations: • Assets: identification, classification and evaluation • Threats to assets: classification and evaluation • Vulnerabilities present in the environment • Probability or frequency of the threat • The impact that the exposure can have on the organization • Countermeasures that can reduce the impact • The residual risk, risk acceptance, risk treatment plan, etc.