"Information Security Risk Analysis shows you how to use cost-effective risk analysis techniques to identify and quantify the threats - both accidental and purposeful - your organization faces. The book steps you through the qualitative risk analysis process - using techniques such as PARA (Practical Application of Risk Analysis) and FRAP (Facilitated Risk Analysis Process) to evaluate tangible and intangible risks; use the qualitative risk analysis process; and identify elements that make up a strong Business Impact Analysis."--Jacket.