Playing To Win At The Game Of Risk
Certification Magazine|October 2017

Sound risk management practices are an important pillar of a thriving certification program

Ken Salchow
Playing To Win At The Game Of Risk
The recent escalation of information security incidents around the world, from the Equifax hack and the publishing of NSA-derived exploits and global ransomware attacks, to the barrage of hacking continuing to plunge the Ukraine into a constant state of unease, has highlighted the increased need for better risk assessment and management in all areas of business.

As a former information security professional turned exam sponsor, I view risk assessment and management as being innately imbedded into the management of our credentialing program. It is increasingly evident, however, that my path to the certification realm differs significantly from the path taken by most professionals who also end up there.

As technology continues to transform our industry rapidly, everyone needs to understand risk assessment and management basics to make informed decisions affecting the validity, integrity, and credibility of our assessment and credentialing programs.

In the credentialing world, the concept of “legal defensibility” is a consistent theme. We spend significant time, money, and effort ensuring our programs are legally defensible, and applying rigorous psychometric standards and processes. Yet this term rarely extends beyond supporting the basic validity of the assessment score interpretations. Exam security rarely extends beyond maintaining the confidentiality of the test items and delivery.

In the information security world, legal defensibility is enshrined in two specific concepts: due diligence and due care; bridging these two is the risk assessment process. A basic understanding of these concepts and the process will allow certification sponsors to make better decisions across their credentialing programs.

Due Diligence

This story is from the {{IssueName}} edition of {{MagazineName}}.

Start your 7-day Magzter GOLD free trial to access thousands of curated premium stories, and 9,000+ magazines and newspapers.

This story is from the {{IssueName}} edition of {{MagazineName}}.

Start your 7-day Magzter GOLD free trial to access thousands of curated premium stories, and 9,000+ magazines and newspapers.

MORE STORIES FROM CERTIFICATION MAGAZINEView all
Wanted: Your Cloud Computing Skills
Certification Magazine

Wanted: Your Cloud Computing Skills

Employers need cloud computing expertise, but demand is outstripping supply

time-read
6 mins  |
October 2020
The Job Before Your First Job
Certification Magazine

The Job Before Your First Job

An IT internship can be your strong first step toward a rewarding professional career

time-read
10 mins  |
October 2020
Professionalizing the CLOUD
Certification Magazine

Professionalizing the CLOUD

A conversation with the exam architect behind the hottest certification in cloud security

time-read
7 mins  |
October 2020
SETTING HIS SIGHTS ON SUCCESS
Certification Magazine

SETTING HIS SIGHTS ON SUCCESS

Ohio IT student has mastered computer repair, cybersecurity, and certification

time-read
10 mins  |
October 2020
The Typist Who Became a Technologist
Certification Magazine

The Typist Who Became a Technologist

Long time Utah IT educator got her first exposure to computers in high school

time-read
10+ mins  |
October 2020
Pick a Cloud, Any Cloud
Certification Magazine

Pick a Cloud, Any Cloud

Which cloud computing models best support business aims — and which ones should you learn?

time-read
7 mins  |
October 2020
Here, There, and Everywhere
Certification Magazine

Here, There, and Everywhere

Distributed cloud computing is bringing the cloud closer to all of us

time-read
7 mins  |
October 2020
Master of Efficiency
Certification Magazine

Master of Efficiency

A skilled operations analyst fine tunes processes to help organizations flourish

time-read
6 mins  |
October 2020
Learn Smarter, Not Harder
Certification Magazine

Learn Smarter, Not Harder

Everyone is doing online learning now — but that doesn’t mean they’re doing it right

time-read
10 mins  |
October 2020
From Horizon to Horizon
Certification Magazine

From Horizon to Horizon

No matter where you look, cloud technology is blanketing the IT industry

time-read
9 mins  |
October 2020