Risk Identification
Identify assets, threats, vulnerabilities, impacts and existing security controls.

SECURITY SERVICE
保安風險評估及審計(SRAA)
Help organisations identify information-system risks, security-control gaps and practical improvement priorities.
Scope can cover systems, data, users, supply chains and operational processes.
Identify assets, threats, vulnerabilities, impacts and existing security controls.
Review the design and implementation of technical and management controls.
Map risks, control gaps and actionable improvement priorities.
This describes assessment capability and does not claim designated Hong Kong Government SRAA supplier status.