SECURITY SERVICE

SECURITY RISK ASSESSMENT AND AUDIT

保安風險評估及審計(SRAA)

Help organisations identify information-system risks, security-control gaps and practical improvement priorities.

Scope can cover systems, data, users, supply chains and operational processes.

ASSESSMENT SCOPE

01

Risk Identification

Identify assets, threats, vulnerabilities, impacts and existing security controls.

02

Security Audit

Review the design and implementation of technical and management controls.

03

Gap Analysis

Map risks, control gaps and actionable improvement priorities.

04

Qualification Statement

This describes assessment capability and does not claim designated Hong Kong Government SRAA supplier status.

Need to clarify the assessment scope?

Talk to Us