{"id":4789,"date":"2022-03-20T09:07:57","date_gmt":"2022-03-20T08:07:57","guid":{"rendered":"https:\/\/preventista.sk\/info\/?p=4789"},"modified":"2022-03-20T09:10:59","modified_gmt":"2022-03-20T08:10:59","slug":"preco-je-manazment-it-rizik-dolezity-pre-bezpecnost-organizacie","status":"publish","type":"post","link":"https:\/\/preventista.sk\/info\/preco-je-manazment-it-rizik-dolezity-pre-bezpecnost-organizacie\/","title":{"rendered":"Pre\u010do je mana\u017ement IT riz\u00edk d\u00f4le\u017eit\u00fd pre bezpe\u010dnos\u0165 organiz\u00e1cie"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Mo\u017eno ste sa u\u017e stretli s&nbsp;pojmom mana\u017ement riz\u00edk v&nbsp;spojen\u00ed s&nbsp;informa\u010dnou bezpe\u010dnos\u0165ou. Existuje mnoho odborn\u00fdch metod\u00edk, ktor\u00e9 detailne popisuj\u00fa cel\u00fd proces riadenia riz\u00edk. Cie\u013eom tohoto \u010dl\u00e1nku nie je rozobera\u0165 ich. Cie\u013eom je jednoducho a&nbsp;prakticky vysvetli\u0165 pojem mana\u017ement riz\u00edk, op\u00edsa\u0165 ak\u00e9 funkcie ukr\u00fdva a&nbsp;najm\u00e4 ako v\u00e1m m\u00f4\u017ee by\u0165 n\u00e1pomocn\u00fd. A ako&nbsp;m\u00f4\u017ee by\u0165 pri spr\u00e1vnej implement\u00e1cii n\u00e1pomocn\u00fd pri prepojen\u00ed technick\u00e9ho sveta informa\u010dnej bezpe\u010dnosti s&nbsp;biznisom firmy. Risk mana\u017ement m\u00e1 poskytn\u00fa\u0165 dostato\u010dn\u00e9 inform\u00e1cie potrebn\u00e9 pre v\u00fdvoj\u00e1ra, ktor\u00fd vie technicky opravi\u0165 chyby v&nbsp;aplik\u00e1ci\u00ed, ktor\u00fa programuje a&nbsp;z\u00e1rove\u0148 m\u00e1 motivova\u0165 riadite\u013ea firmy&nbsp;zaplati\u0165 v\u00fdvoj t\u00fdchto opr\u00e1v. Pri\u010dom prim\u00e1rnou amb\u00edciou mana\u017ementu riz\u00edk je &nbsp;dosiahnutie \u010do najvy\u0161\u0161ej \u00farovne informa\u010dnej bezpe\u010dnosti v organiz\u00e1cii, v&nbsp;ktorej m\u00e1 by\u0165 tak\u00fdto mana\u017ement riz\u00edk implementovan\u00fd. Informa\u010dn\u00e1 bezpe\u010dnos\u0165 m\u00e1 by\u0165 jednou z&nbsp;k\u013e\u00fa\u010dov\u00fdch pilierov ka\u017edej organiz\u00e1cie, je nevyhnutn\u00e1 na ochranu &nbsp;ka\u017edodenn\u00e9ho biznisu.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large is-resized\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" data-attachment-id=\"4793\" data-permalink=\"https:\/\/preventista.sk\/info\/preco-je-manazment-it-rizik-dolezity-pre-bezpecnost-organizacie\/man_rizik\/\" data-orig-file=\"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?fit=940%2C788&amp;ssl=1\" data-orig-size=\"940,788\" data-comments-opened=\"1\" data-image-title=\"man_rizik\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?fit=700%2C587&amp;ssl=1\" src=\"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?resize=424%2C356&#038;ssl=1\" alt=\"\" class=\"wp-image-4793\" width=\"424\" height=\"356\" srcset=\"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?resize=700%2C587&amp;ssl=1 700w, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?resize=450%2C377&amp;ssl=1 450w, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?resize=320%2C268&amp;ssl=1 320w, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?resize=768%2C644&amp;ssl=1 768w, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/03\/man_rizik.png?w=940&amp;ssl=1 940w\" sizes=\"auto, (max-width: 424px) 100vw, 424px\" \/><\/figure><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">Slovo organiz\u00e1cia je len abstraktn\u00fd pojem a&nbsp;za dosahovanie istej \u00farovne bezpe\u010dnosti s\u00fa zodpovedn\u00ed \u013eudia, ktor\u00ed v&nbsp;nej pracuj\u00fa. Ale kto konkr\u00e9tne to m\u00e1 by\u0165? M\u00e1 sa t\u00e1to zodpovednos\u0165 nejak\u00fdm sp\u00f4sobom rozdeli\u0165? Kto je t\u00fdm kto z\u00e1v\u00e4zne rozhodne \u010di sa nejak\u00e9 bezpe\u010dnostn\u00e9 opatrenie nasad\u00ed, alebo bud\u00fa tieto peniaze rad\u0161ej investovan\u00e9 na nie\u010do in\u00e9? Aby sme sa dostali k&nbsp;odpovediam na tieto ot\u00e1zky, mus\u00edme si najsk\u00f4r vysvetli\u0165 pojem, ktor\u00fd definuje to na \u010dom n\u00e1m v&nbsp;spojen\u00ed s&nbsp;organiz\u00e1ciu, v&nbsp;ktorej pracujeme alebo ktor\u00fa vlastn\u00edme, z\u00e1le\u017e\u00ed. T\u00fdm pojmom je akt\u00edvum. Akt\u00edvom je v\u0161etko, \u010do je pre n\u00e1s d\u00f4le\u017eit\u00e9, \u010do nielen chceme, ale nutne potrebujeme chr\u00e1ni\u0165, lebo na tom priamo m\u00f4\u017ee z\u00e1visie\u0165 \u00faspech, resp. ne\u00faspech&nbsp;spolo\u010dnosti. Akt\u00edvom je v\u0161etko to, \u010doho naru\u0161enie by n\u00e1s mohlo zabolie\u0165, \u010di u\u017e finan\u010dne, napr. zv\u00fd\u0161en\u00e9 n\u00e1klady na n\u00e1pravu probl\u00e9mu, alebo reputa\u010dne, napr. po\u0161kodenie dobr\u00e9ho mena spolo\u010dnosti. Ke\u010f\u017ee sa st\u00e1le rozpr\u00e1vame o&nbsp;informa\u010dnej bezpe\u010dnosti, ohrani\u010dme si preto na\u0161e akt\u00edva tak, \u017ee sa bud\u00fa t\u00fdka\u0165 inform\u00e1ci\u00ed, d\u00e1t a \u00fadajov. M\u00f4\u017eu to by\u0165 inform\u00e1cie vo forme zdrojov\u00e9ho k\u00f3du aplik\u00e1cie, ktor\u00fa poskytujeme na\u0161im klientom, \u00fadaje o&nbsp;klientoch, ktor\u00e9 uklad\u00e1me na elektronick\u00fdch nosi\u010doch, patenty v&nbsp;organiz\u00e1cii alebo zap\u00edsan\u00e9 recept\u00fary, ktor\u00e9 si v&nbsp;na\u0161ej rodinnej firme odovzd\u00e1vame z&nbsp;gener\u00e1cie na gener\u00e1ciu.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">V&nbsp;men\u0161\u00edch firm\u00e1ch je typicky akt\u00edv menej, a&nbsp;vo v\u00e4\u010d\u0161\u00edch logicky viac, z&nbsp;\u010doho vypl\u00fdva, \u017ee aj po\u010det \u013eud\u00ed zodpovedn\u00fdch za akt\u00edva sa s&nbsp;ich zvy\u0161uj\u00facim po\u010dtom zvy\u0161uje. Je to tak aj z&nbsp;kapacitn\u00fdch d\u00f4vodov, aby bola zodpovednos\u0165 rozlo\u017een\u00e1 a&nbsp;udr\u017eate\u013en\u00e1. V&nbsp;oblasti mana\u017ementu riz\u00edk sa osoba zodpovedn\u00e1 za akt\u00edvum naz\u00fdva biznis vlastn\u00edk. Je to presne ten \u010dlovek, ktor\u00fd si m\u00e1 v&nbsp;dobre chr\u00e1nenej spolo\u010dnosti kl\u00e1s\u0165 ot\u00e1zku: Je akt\u00edvum, za ktor\u00e9 som zodpovedn\u00fd a&nbsp;od ktor\u00e9ho je m\u00f4j biznis z\u00e1visl\u00fd dostato\u010dne dobre chr\u00e1nen\u00e9?<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Pre dosiahnutie \u010do najvy\u0161\u0161ej bezpe\u010dnosti v&nbsp;spolo\u010dnosti je k\u013e\u00fa\u010dov\u00fdm bodom ak si biznis vlastn\u00edci, uvedomuj\u00faci svoju zodpovednos\u0165 za akt\u00edvum, a&nbsp;potrebu nest\u00e1le zve\u013ea\u010fova\u0165 akt\u00edva a zvy\u0161ova\u0165 mieru zabezpe\u010denia pridelen\u00fdch akt\u00edv.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Pr\u00e1ve tu m\u00f4\u017eeme pozorova\u0165, pre\u010do je tak d\u00f4le\u017eit\u00fd mana\u017ement riz\u00edk. Je prostriedkom, ktor\u00fd umo\u017e\u0148uje technick\u00e9 po\u017eiadavky z&nbsp;IT sveta premietnu\u0165 do re\u010di, zrozumite\u013enej pre biznis \u010dloveka. Z\u00e1rove\u0148 &nbsp;mu poskytne vstupy potrebn\u00e9 pre rozhodnutie, do \u010doho bude investova\u0165 v&nbsp;s\u00favislosti so zv\u00fd\u0161en\u00edm \u00farovne bezpe\u010dnosti akt\u00edva. Biznis vlastn\u00edci, najm\u00e4 vo v\u00e4\u010d\u0161\u00edch spolo\u010dnostiach, nie s\u00fa technick\u00ed v\u00fdvoj\u00e1ri. Nemusia rozumie\u0165 technickej architekt\u00fare rie\u0161enia, respekt\u00edve prostrediu, kde aplik\u00e1cia, za ktor\u00fa s\u00fa zodpovedn\u00ed be\u017e\u00ed. \u010ci be\u017e\u00ed na serveroch v&nbsp;dom\u00e1com d\u00e1tovom centre, alebo niekde v&nbsp;cloude, kto je administr\u00e1torom&nbsp;aplik\u00e1cie,&nbsp;kto ka\u017ed\u00fd m\u00e1 pr\u00edstup k&nbsp;d\u00e1tam, pr\u00edpadne&nbsp;ak\u00e9 prepojenia na in\u00e9 aplik\u00e1cie existuj\u00fa. D\u00f4le\u017eit\u00e9 pre biznis vlastn\u00edka je, \u017ee akt\u00edvum je dostupn\u00e9 a&nbsp;je v&nbsp;bezpe\u010dnom stave. My v\u0161ak vieme, \u017ee tento pr\u00edstup nie je dobr\u00fd a&nbsp;v\u00f4bec neodzrkad\u013euje zodpovednos\u0165 biznis vlastn\u00edka za akt\u00edvum. Preto\u017ee ak je niekto zodpovedn\u00fd za akt\u00edvum, mus\u00ed sa zaobera\u0165 dostupnos\u0165ou, v\u00fdkonom, bezpe\u010dnos\u0165ou a&nbsp;aj t\u00fdm, kde d\u00e1ta s\u00fa,&nbsp;ako s\u00fa spracov\u00e1van\u00e9 a&nbsp;kto ku nim m\u00e1 pr\u00edstup.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Mana\u017ement riz\u00edk je v&nbsp;tomto pr\u00edpade d\u00f4le\u017eit\u00fd preto, lebo prep\u00e1ja nieko\u013eko rol\u00ed:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>technikov, pod ktor\u00fdmi si m\u00f4\u017eete predstavi\u0165 IT v\u00fdvoj\u00e1rov aplik\u00e1cie a&nbsp;administr\u00e1torov syst\u00e9mov, alebo aj bezpe\u010dnostn\u00fdch \u0161pecialistov, ktor\u00ed maj\u00fa pos\u00fadi\u0165 mieru a \u00farove\u0148 zabezpe\u010denia<\/li><li>biznis vlastn\u00edka<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Mana\u017e\u00e9r riz\u00edk je vlastne medi\u00e1tor, ktor\u00e9ho \u00falohou je prepoji\u0165 uveden\u00e9 role.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Aby sme si vysvetlili \u00falohu medi\u00e1tora v&nbsp;procese mana\u017ementu riz\u00edk a riadenia bezpe\u010dnosti v&nbsp;organiz\u00e1cii, je potrebn\u00e9 zadefinova\u0165 e\u0161te tri pojmy \u2013 zranite\u013enos\u0165, hrozba a riziko.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">U\u017e sme si povedali \u010do je akt\u00edvum. Pre lep\u0161ie pochopenie si uve\u010fme jednoduch\u00fd pr\u00edklad mimo IT sveta. Predstavme si, \u017ee p\u00e1n Zdeno vlastn\u00ed kamenn\u00fd obchod na predaj kn\u00edh. Preto aby ho tento obchod u\u017eivil s\u00fa pre neho z\u00e1kladn\u00e9 <strong>akt\u00edva fyzick\u00fd priestor obchodu a\u00a0knihy<\/strong>, ktor\u00e9 sa v\u00a0\u0148om nach\u00e1dzaj\u00fa. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Zranite\u013enos\u0165ou<\/strong> m\u00f4\u017ee by\u0165 napr\u00edklad to, \u017ee Zdeno m\u00e1 vo svojom obchode ve\u013ea hor\u013eav\u00e9ho materi\u00e1lu a\u00a0pou\u017e\u00edva ve\u013emi hor\u00face zariadenia na vyhrievanie obchodu. Taktie\u017e to, \u017ee m\u00e1 pr\u00edstup do obchodu priamo z\u00a0frekventovanej ulice len s\u00a0jednoduch\u00fdm z\u00e1mkom na dver\u00e1ch bez mre\u017ee. V\u00a0tomto modelovom pr\u00edklade ch\u00fdba ak\u00e9ko\u013evek o\u0161etrenie t\u00fdchto zranite\u013enost\u00ed ako hl\u00e1si\u010d po\u017eiaru alebo alarm. Z\u00a0uveden\u00e9ho je zrejm\u00e9, \u017ee <strong>zranite\u013enos\u0165 je nejak\u00e1 slabina na na\u0161om akt\u00edve<\/strong>, ktor\u00e1 m\u00f4\u017ee by\u0165 pr\u00ed\u010dinou jeho po\u0161kodenia. Av\u0161ak nato, aby bola t\u00e1to zranite\u013enos\u0165 vyu\u017eit\u00e1 na po\u0161kodenie akt\u00edva, mus\u00ed d\u00f4js\u0165 ku nejakej konkr\u00e9tnej akcii. Touto akciou je hrozba. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Hrozbou<\/strong> pre p\u00e1na Zdena je napr\u00edklad \u00a0<strong>elektrick\u00fd skrat<\/strong> <strong>a\u00a0vypuknutie po\u017eiaru<\/strong>, alebo sa mu do obchodu <strong>vl\u00e1mu zlodeji a\u00a0ukradn\u00fa knihy a\u00a0hotovos\u0165 z\u00a0pokladne<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Spojen\u00edm t\u00fdchto troch elementov: akt\u00edvum \u2013 zranite\u013enos\u0165 \u2013 hrozba vznik\u00e1 riziko. Riziko je udalos\u0165, \u017ee hrozba naru\u0161\u00ed akt\u00edvum vyu\u017eit\u00edm zranite\u013enosti, ktor\u00e1 m\u00e1 definovan\u00e9 hodnoty pre dopad a&nbsp;zranite\u013enos\u0165. Dopad rizika je \u010d\u00edseln\u00e9 vyjadrenie toho, ako z\u00e1va\u017en\u00e1 bude udalos\u0165 rizika ak nastane. A&nbsp;pravdepodobnos\u0165 rizika je zase \u010d\u00edseln\u00e9 vyjadrenie toho, ako pravdepodobn\u00e9 je, \u017ee t\u00e1to udalos\u0165 nastane. Samotn\u00e9 v\u00fdpo\u010dty t\u00fdchto veli\u010d\u00edn a&nbsp;aj to na akej \u0161k\u00e1le sa v\u00fdsledn\u00e9 hodnoty pohybuj\u00fa je z\u00e1le\u017eitos\u0165ou zvolenej metodiky na mana\u017ement riz\u00edk.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Uveden\u00fd pr\u00edklad s\u00edce nebol z&nbsp;oblasti informa\u010dnej bezpe\u010dnosti, ale princ\u00edp ost\u00e1va rovnak\u00fd.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Predstavme si, \u017ee m\u00e1me aplik\u00e1ciu, v&nbsp;ktorej evidujeme osobn\u00e9 \u00fadaje v\u0161etk\u00fdch na\u0161ich klientov. A&nbsp;z\u00e1rove\u0148 evidujeme zranite\u013enos\u0165, \u017ee dan\u00e1 aplik\u00e1cia be\u017e\u00ed na po\u010d\u00edta\u010di ku ktor\u00e9mu m\u00e1 pr\u00edstup viacero \u013eud\u00ed, \u010das\u0165 z&nbsp;nich technicky ve\u013emi erudovan\u00e1.&nbsp;S\u00fa\u010dasne vieme, \u017ee aplik\u00e1cia je chr\u00e1nen\u00e1 len slab\u00fdm, r\u00fdchlo uh\u00e1dnute\u013en\u00fdm heslom. Potom existuje hrozba, \u017ee sa niekto cudz\u00ed, neopr\u00e1vnen\u00fd dostane k&nbsp;osobn\u00fdm d\u00e1tam na\u0161ich klientov, a&nbsp;m\u00f4\u017ee d\u00f4js\u0165 k&nbsp;\u00faniku osobn\u00fdch \u00fadajov. V&nbsp;pr\u00edpade \u00faniku osobn\u00fdch \u00fadajov n\u00e1m hroz\u00ed&nbsp; pokuta.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">T\u00fdm, \u017ee sme identifikovali tri elementy \u2013 osobn\u00e9 \u00fadaje klientov, slab\u00e9 zabezpe\u010denie heslom a&nbsp;hrozbu \u00faniku citliv\u00fdch d\u00e1t a n\u00e1sledne&nbsp;potenci\u00e1lnu pokutu \u2013 si m\u00f4\u017eeme poveda\u0165, \u017ee sme identifikovali riziko.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Teraz ke\u010f u\u017e pozn\u00e1me z\u00e1kladn\u00e9 pojmy akt\u00edvum, zranite\u013enos\u0165, hrozba a&nbsp;riziko m\u00f4\u017eeme sa vr\u00e1ti\u0165 k&nbsp;n\u00e1\u0161mu mana\u017e\u00e9rovi bezpe\u010dnostn\u00fdch riz\u00edk. Jeho \u00falohou je pozrie\u0165 sa na akt\u00edvum, ktor\u00e9 je posudzovan\u00e9, a&nbsp;v&nbsp;prvom kroku pochopi\u0165 aj&nbsp; pomocou komunik\u00e1cie s&nbsp;technikmi, ak\u00e1 je architekt\u00fara rie\u0161enia a&nbsp;ak\u00fd bezpe\u010dnostn\u00fd probl\u00e9m je pr\u00edtomn\u00fd. N\u00e1sledne pomocou metodiky riadenia bezpe\u010dnostn\u00fdch riz\u00edk, ktor\u00fa si predstavte ako rozsiahly metodick\u00fd dokument popisuj\u00faci proces ber\u00faci do \u00favahy z\u00e1va\u017enosti zranite\u013enost\u00ed a&nbsp;hrozieb, a&nbsp;d\u00f4le\u017eitosti akt\u00edv, matematick\u00fdm prepo\u010dtom vyjadr\u00ed hodnotu rizika. Hodnota rizika je vyu\u017eite\u013en\u00e1 v&nbsp;momente, ke\u010f sa biznis vlastn\u00edk rozhoduje, \u010di vy\u010dlen\u00ed vo svojom rozpo\u010dte peniaze na o\u0161etrenie zranite\u013enosti aby eliminoval riziko. Tento \u00fasudok urob\u00ed sp\u00f4sobom, \u017ee na pomyseln\u00e9 misky v\u00e1h si d\u00e1 na jednu stranu potenci\u00e1lny dopad rizika, ktor\u00fd sme si pomocou matematick\u00e9ho prepo\u010dtu vyjadrili \u010d\u00edselne vo financi\u00e1ch, a&nbsp;na druh\u00fa stranu sumu, ktor\u00fa by ho st\u00e1lo o\u0161etrenie zranite\u013enost\u00ed v&nbsp;identifikovan\u00fdch rizik\u00e1ch (v na\u0161ich pr\u00edkladoch s\u00fa t\u00fdmito o\u0161etreniami alarm a&nbsp;po\u017eiarny hl\u00e1si\u010d v&nbsp;obchode, a&nbsp;naprogramovanie silnej\u0161ej bezpe\u010dnostnej politiky na kvalitu hesla a&nbsp;riadenie pr\u00edstupu k&nbsp;d\u00e1tam v aplik\u00e1cii). Ak prev\u00e1\u017ei miska s&nbsp;hodnoten\u00fdm rizikom, zaplat\u00ed o\u0161etrenie zranite\u013enost\u00ed. A&nbsp;ak prev\u00e1\u017ei miska so sumou potrebnou na vykonanie n\u00e1pravy, rozhodne sa akceptova\u0165 riziko, ktor\u00e9 si zaeviduje a&nbsp;na pravidelnej b\u00e1ze prehodnot\u00ed. M\u00f4\u017ee napr\u00edklad ka\u017ed\u00fd rok zhodnoti\u0165, \u010di protipo\u017eiarne alarmy do obchodu nezlacneli, a&nbsp;nie je u\u017e vhodn\u00fd \u010das ich zak\u00fapi\u0165.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Mo\u017eno sa p\u00fdtate, pre\u010do ma\u0165 tak\u00fdto mana\u017ement riz\u00edk, a \u010di nie je lep\u0161ie nema\u0165 \u017eiadne rizik\u00e1. Zo svojej sk\u00fasenosti m\u00f4\u017eem poveda\u0165, \u017ee je \u00faplne v&nbsp;poriadku ak v&nbsp;r\u00e1mci svojej organiz\u00e1cie identifikujete a&nbsp;evidujete bezpe\u010dnostn\u00e9 rizika. Dokonca som presved\u010den\u00fd, \u017ee je to nevyhnutn\u00e9. Pri riaden\u00ed organiz\u00e1cie je \u010dasto potrebn\u00e9 robi\u0165 r\u00fdchle akcie, by\u0165 inovat\u00edvny, by\u0165 \u010dastokr\u00e1t prv\u00fd na trhu alebo vykona\u0165 zmenu, ktor\u00e1 je n\u00e1ro\u010dn\u00e1 a&nbsp;bude sa vykon\u00e1va\u0165 vo viacer\u00fdch f\u00e1zach. A&nbsp;pri t\u00fdchto r\u00fdchlych a&nbsp;\u00fadern\u00fdch akci\u00e1ch potrebujeme robi\u0165 v\u00fdnimku, teda \u201epri\u017em\u00fari\u0165 o\u010di\u201c, a&nbsp;preto aby sme nie\u010do nasadili r\u00fdchlej\u0161ie alebo lacnej\u0161ie do\u010dasne ust\u00fapime od niektor\u00fdch&nbsp;bezpe\u010dnostn\u00fdch z\u00e1sad. Av\u0161ak, je ve\u013emi d\u00f4le\u017eit\u00e9 neignorova\u0165 tieto \u00fastupky, ale ma\u0165 ich riaden\u00e9 v&nbsp;podobe v\u00fdnimiek. Ka\u017ed\u00e1 v\u00fdnimka plod\u00ed jedno alebo viacero riz\u00edk. Mana\u017ement riz\u00edk n\u00e1s n\u00fati uvedomova\u0165 si ako ve\u013emi riskujeme na \u00fakor biznisu a&nbsp;\u017eiada od n\u00e1s nastavenie si hran\u00edc, za ktor\u00e9 s&nbsp;t\u00fdmto rizikom nechceme \u00eds\u0165, lebo by to mohlo po\u0161kodi\u0165 cel\u00fa na\u0161u firmu, n\u00e1\u0161 biznis. Je v&nbsp;poriadku vlastni\u0165 riziko, ale nie je bezpe\u010dn\u00e9 ignorova\u0165 a&nbsp;nepo\u010d\u00edta\u0165 s&nbsp;rizikom. Mana\u017ement bezpe\u010dnostn\u00fdch riz\u00edk sa tak st\u00e1va jedn\u00fdm z akceler\u00e1torov biznisu, ktor\u00fd z\u00e1rove\u0148 pom\u00e1ha udr\u017eiava\u0165 bezpe\u010dnos\u0165 na po\u017eadovanej \u00farovni.&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Mo\u017eno ste sa u\u017e stretli s&nbsp;pojmom mana\u017ement riz\u00edk v&nbsp;spojen\u00ed s&nbsp;informa\u010dnou bezpe\u010dnos\u0165ou. Existuje mnoho odborn\u00fdch metod\u00edk, ktor\u00e9 detailne popisuj\u00fa cel\u00fd proces riadenia riz\u00edk. Cie\u013eom tohoto \u010dl\u00e1nku nie je rozobera\u0165 ich. Cie\u013eom je jednoducho a&nbsp;prakticky vysvetli\u0165 pojem mana\u017ement riz\u00edk, op\u00edsa\u0165 ak\u00e9 funkcie ukr\u00fdva a&nbsp;najm\u00e4 ako v\u00e1m m\u00f4\u017ee by\u0165 n\u00e1pomocn\u00fd. A ako&nbsp;m\u00f4\u017ee by\u0165 pri spr\u00e1vnej implement\u00e1cii n\u00e1pomocn\u00fd pri [&hellip;]<\/p>\n","protected":false},"author":19,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[4],"tags":[140,139],"class_list":["post-4789","post","type-post","status-publish","format-standard","hentry","category-itbezp","tag-riadenie-rizik","tag-rizika"],"aioseo_notices":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack-related-posts":[{"id":2901,"url":"https:\/\/preventista.sk\/info\/riadenie-rizik-v-informacnej-bezpecnosti\/","url_meta":{"origin":4789,"position":0},"title":"Riadenie riz\u00edk v informa\u010dnej bezpe\u010dnosti","author":"I. Makatura","date":"21. okt\u00f3bra 2015","format":false,"excerpt":"IT riziko ako t\u00e9ma d\u0148a Informa\u010dn\u00e9 technol\u00f3gie s\u00fa dnes integr\u00e1lnou s\u00fa\u010das\u0165ou v\u00e4\u010d\u0161iny podporn\u00fdch, ale aj obchodn\u00fdch podnikov\u00fdch procesov. Rast\u00faca z\u00e1vislos\u0165 na IT aplik\u00e1ci\u00e1ch v\u0161ak v s\u00fa\u010dasnosti znamen\u00e1 aj dramatick\u00fd n\u00e1rast riz\u00edk a potrebami ich nepretr\u017eitej a systematickej ochrany. Rie\u0161en\u00edm probl\u00e9mov ochrany informa\u010dn\u00fdch akt\u00edv organiz\u00e1cie pred rizikami vypl\u00fdvaj\u00facimi z prev\u00e1dzky IT\u2026","rel":"","context":"V &quot;Bezpe\u010dnos\u0165&quot;","block_context":{"text":"Bezpe\u010dnos\u0165","link":"https:\/\/preventista.sk\/info\/category\/itbezp\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/10\/rizika.png?fit=700%2C400&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/10\/rizika.png?fit=700%2C400&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/10\/rizika.png?fit=700%2C400&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/10\/rizika.png?fit=700%2C400&ssl=1&resize=700%2C400 2x"},"classes":[]},{"id":2768,"url":"https:\/\/preventista.sk\/info\/outsourcing-informacnych-technologii-a-bezpecnost\/","url_meta":{"origin":4789,"position":1},"title":"Outsourcing informa\u010dn\u00fdch technol\u00f3gi\u00ed a bezpe\u010dnos\u0165","author":"Redakcia","date":"5. augusta 2015","format":false,"excerpt":"In\u0161tit\u00facie verejnej spr\u00e1vy podobne ako firmy a organiz\u00e1cie zo s\u00fakromn\u00e9ho sektora vyu\u017e\u00edvaj\u00fa outsourcing ako jednu zo strat\u00e9gi\u00ed boja s ch\u00fdbaj\u00facimi profesion\u00e1lmi a\u00a0nedostatkom finan\u010dn\u00fdch prostriedkov pre\u00a0oblas\u0165 informa\u010dn\u00fdch a\u00a0komunika\u010dn\u00fdch technol\u00f3gi\u00ed. Je ale n\u00e1kup IT slu\u017eieb pre zabezpe\u010denie kritick\u00fdch procesov a\u00a0bezpe\u010dnosti organiz\u00e1cie u\u00a0dod\u00e1vate\u013ea v\u017edy spr\u00e1vnou vo\u013ebou? Outsourcing je v\u00a0s\u00fa\u010dasnosti ob\u013e\u00faben\u00fdm sp\u00f4sobom optimaliz\u00e1cie n\u00e1kladov\u2026","rel":"","context":"V &quot;Bezpe\u010dnos\u0165&quot;","block_context":{"text":"Bezpe\u010dnos\u0165","link":"https:\/\/preventista.sk\/info\/category\/itbezp\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/08\/cover.jpg?fit=700%2C400&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/08\/cover.jpg?fit=700%2C400&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/08\/cover.jpg?fit=700%2C400&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2015\/08\/cover.jpg?fit=700%2C400&ssl=1&resize=700%2C400 2x"},"classes":[]},{"id":3406,"url":"https:\/\/preventista.sk\/info\/co-je-to-kyberneticka-bezpecnost\/","url_meta":{"origin":4789,"position":2},"title":"\u010co je to kybernetick\u00e1 bezpe\u010dnos\u0165?","author":"I. Makatura","date":"3. marca 2017","format":false,"excerpt":"\u00a0 Dnes u\u017e zrejme nikto nepochybuje o\u00a0tom, \u017ee \u013eudia s\u00fa na inform\u00e1ci\u00e1ch z\u00e1visl\u00ed. A\u00a0nie je to len z\u00e1vislos\u0165 v\u00a0zmysle poh\u013eadov, neust\u00e1le sklonen\u00fdch ku mobiln\u00fdm telef\u00f3nom. Ve\u010f z\u00e1vislos\u0165 na inform\u00e1ci\u00e1ch sa t\u00fdka u\u017e aj mnoh\u00fdch hospod\u00e1rskych odvetv\u00ed a\u00a0spr\u00e1vy vec\u00ed verejn\u00fdch. Inform\u00e1ci\u00ed je viac, ne\u017e kedyko\u013evek predt\u00fdm, inform\u00e1cie s\u00fa sprac\u00favan\u00e9 r\u00fdchlej\u0161ie a\u2026","rel":"","context":"V &quot;Bezpe\u010dnos\u0165&quot;","block_context":{"text":"Bezpe\u010dnos\u0165","link":"https:\/\/preventista.sk\/info\/category\/itbezp\/"},"img":{"alt_text":"\u010co je to kybernetick\u00e1 bezpe\u010dnos\u0165?","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2017\/03\/clanok.png?fit=800%2C400&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2017\/03\/clanok.png?fit=800%2C400&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2017\/03\/clanok.png?fit=800%2C400&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2017\/03\/clanok.png?fit=800%2C400&ssl=1&resize=700%2C400 2x"},"classes":[]},{"id":4791,"url":"https:\/\/preventista.sk\/info\/rizika-sucast-cloud-sveta\/","url_meta":{"origin":4789,"position":3},"title":"Rizik\u00e1 \u2013 s\u00fa\u010das\u0165 Cloud sveta (5.\u010das\u0165 miniseri\u00e1lu)","author":"Iveta \u0160\u0165avinov\u00e1","date":"30. marca 2022","format":false,"excerpt":"Prin\u00e1\u0161ame v\u00e1m \u010fal\u0161\u00ed \u010dl\u00e1nok, ktor\u00fd sa venuje bezpe\u010dnosti cloudov. V\u00a0predch\u00e1dzaj\u00facich \u010dl\u00e1nkoch sme hovorili o tom, \u017ee faktor zdie\u013eania zdrojov poskytovan\u00fdch a\u00a0vyu\u017e\u00edvan\u00fdch vo forme cloud slu\u017eieb m\u00f4\u017ee ma\u0165 ekonomick\u00fd pr\u00ednos (Economy of the Scale). Z\u00e1rove\u0148 v\u0161ak prin\u00e1\u0161a zdie\u013eanie zodpovednosti za spr\u00e1vne a\u00a0bezpe\u010dn\u00e9 pou\u017e\u00edvanie cloud slu\u017eieb. Nielen poskytovate\u013e cloud slu\u017eby je zodpovedn\u00fd\u2026","rel":"","context":"V &quot;Bezpe\u010dnos\u0165&quot;","block_context":{"text":"Bezpe\u010dnos\u0165","link":"https:\/\/preventista.sk\/info\/category\/itbezp\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/01\/Cloud-2.png?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/01\/Cloud-2.png?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/01\/Cloud-2.png?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2022\/01\/Cloud-2.png?resize=700%2C400&ssl=1 2x"},"classes":[]},{"id":5816,"url":"https:\/\/preventista.sk\/info\/tretia-cast-ucebnice-pre-stredne-skoly\/","url_meta":{"origin":4789,"position":4},"title":"Tretia \u010das\u0165 u\u010debnice pre stredn\u00e9 \u0161koly","author":"Redakcia","date":"22. apr\u00edla 2024","format":false,"excerpt":"Tretia \u010das\u0165 U\u010debnice informa\u010dnej bezpe\u010dnosti pre stredn\u00e9 odborn\u00e9 \u0161koly a\u00a0gymn\u00e1zi\u00e1 uzrela svetlo sveta a tak sa uzavrela pl\u00e1novan\u00e1 trojica u\u010debn\u00edc, ktor\u00e9 sme mali v OZ Preventista - zdru\u017eenie pre bezpe\u010dnos\u0165 a prevenciu napl\u00e1novan\u00e9. Prv\u00e9 dve u\u010debnice na\u0161li svoje miesto v slovenskom \u0161kolstve - dnes ich vyu\u017e\u00edva viac ako 300 slovensk\u00fdch\u2026","rel":"","context":"V &quot;Aktu\u00e1lne&quot;","block_context":{"text":"Aktu\u00e1lne","link":"https:\/\/preventista.sk\/info\/category\/akcie\/aktualne\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2024\/03\/image-4.png?resize=350%2C200&ssl=1","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2024\/03\/image-4.png?resize=350%2C200&ssl=1 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2024\/03\/image-4.png?resize=525%2C300&ssl=1 1.5x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2024\/03\/image-4.png?resize=700%2C400&ssl=1 2x"},"classes":[]},{"id":3072,"url":"https:\/\/preventista.sk\/info\/otazky-z-relacie-radio-regina-4-2-2016\/","url_meta":{"origin":4789,"position":5},"title":"Ot\u00e1zky z rel\u00e1cie R\u00e1dio Regina 4.2.2016","author":"Redakcia","date":"5. febru\u00e1ra 2016","format":false,"excerpt":"\u010eakujeme za ot\u00e1zky, ktor\u00e9 ste n\u00e1m poslali do rozhlasovej rel\u00e1cie Porad\u00edme vysvetl\u00edme vysielanej 4.2.2016 z banskobystrick\u00e9ho \u0161t\u00fadia\u00a0r\u00e1dia Regina. Niektor\u00e9 ot\u00e1zky boli \u010diasto\u010dne zodpovedan\u00e9 priamo v rel\u00e1ci\u00ed, niektor\u00e9 sme nestihli. Aby sme vyhoveli v\u0161etk\u00fdm, hos\u0165 rel\u00e1cie Ing.Jaroslav Oster poskytol odpovede na jednotliv\u00e9 ot\u00e1zky aj v p\u00edsomnej forme. \u010eal\u0161ie ot\u00e1zky budeme prid\u00e1va\u0165\u2026","rel":"","context":"V &quot;Bezpe\u010dnos\u0165&quot;","block_context":{"text":"Bezpe\u010dnos\u0165","link":"https:\/\/preventista.sk\/info\/category\/itbezp\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2016\/01\/radio.jpg?fit=625%2C469&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2016\/01\/radio.jpg?fit=625%2C469&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/preventista.sk\/info\/wp-content\/uploads\/2016\/01\/radio.jpg?fit=625%2C469&ssl=1&resize=525%2C300 1.5x"},"classes":[]}],"_links":{"self":[{"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/posts\/4789","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/users\/19"}],"replies":[{"embeddable":true,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/comments?post=4789"}],"version-history":[{"count":4,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/posts\/4789\/revisions"}],"predecessor-version":[{"id":4798,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/posts\/4789\/revisions\/4798"}],"wp:attachment":[{"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/media?parent=4789"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/categories?post=4789"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/preventista.sk\/info\/wp-json\/wp\/v2\/tags?post=4789"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}