Risk Treatment

Noun · Security & Infosec

Definitions

  1. The set of actions taken to handle a risk after it has been identified and evaluated, including mitigation, acceptance, avoidance, or transfer. Risk treatment is the implementation side of risk management, where decisions are turned into concrete controls and follow-up."

    In plain English: The practical action taken to deal with a risk after it is assessed.

    Example: "The formal risk treatment for the unsupported gateway combined short-term segmentation, quarterly review, and a funded replacement project."

Related Terms