Home / Insights / Glossary / IT risk management

Glossary

IT risk management

Identifying and treating risk arising from technology systems, data and their operation.

What it means

IT risk management covers availability, integrity, confidentiality and change: system failure, data loss, unauthorised access, unmanaged change, technical debt and supplier dependency. It overlaps cyber security without being the same thing — a migration that corrupts records is an IT risk with no attacker involved.

Most organisations have detailed technical evidence and thin management records. Logs, scans and tickets are plentiful; the record of what leadership concluded from them is not.

Where MyRISK fits

What we do about it

That gap between technical evidence and accountable decision is what Trace records. Where the problem is instead that an IT risk workflow produces files nobody uses, MyRISK Consulting assesses one workflow end to end.

MyRISK Trace

Is this the thing you are actually trying to fix?

A definition rarely settles it. Tell us what happened — the request, the finding, the challenge or the incident — and we will say where to start, or that it isn't us.