Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
pub:trust_center:risk_framework [21.07.2026 13:38] – Update Risk Framework with comprehensive cross-links for navigation Predrag Tasevskipub:trust_center:risk_framework [21.07.2026 13:57] (current) – [Risk Governance] Predrag Tasevski
Line 50: Line 50:
 For each risk, we choose a strategy: For each risk, we choose a strategy:
  
-Strategy Example +Strategy Example ^
-|---|---|+
 | **Mitigate** | Deploy a Web Application Firewall (WAF) to reduce likelihood of exploitation | | **Mitigate** | Deploy a Web Application Firewall (WAF) to reduce likelihood of exploitation |
 | **Accept** | Accept risk of rare data center outage (handled by AWS redundancy) | | **Accept** | Accept risk of rare data center outage (handled by AWS redundancy) |
Line 69: Line 68:
 ====== Risk Categories We Manage ====== ====== Risk Categories We Manage ======
  
-Risk Category Examples How We Address It Related Document +Risk Category Examples How We Address It Related Document ^
-|---|---|---|---|+
 | **Security Risks** | Data breach, malware, unauthorized access, unpatched vulnerability | Encryption, access control, patch management, monitoring | [[pub:trust_center:iso_27001_overview|ISO 27001]] | | **Security Risks** | Data breach, malware, unauthorized access, unpatched vulnerability | Encryption, access control, patch management, monitoring | [[pub:trust_center:iso_27001_overview|ISO 27001]] |
 | **Availability Risks** | Platform outage, slow performance, deployment failures | Infrastructure redundancy, testing, change management | [[pub:trust_center:iso_20000_1_overview|ISO 20000-1]] | | **Availability Risks** | Platform outage, slow performance, deployment failures | Infrastructure redundancy, testing, change management | [[pub:trust_center:iso_20000_1_overview|ISO 20000-1]] |
Line 79: Line 77:
 ====== Risk Governance ====== ====== Risk Governance ======
  
-Role Responsibility Related Document +Role Responsibility Related Document ^
-|---|---|---|+
 | **CEO (Predrag)** | Approve risk appetite; allocate budget for risk mitigation; review critical risks quarterly | [[pub:company:accountability_chart|Accountability Chart]] | | **CEO (Predrag)** | Approve risk appetite; allocate budget for risk mitigation; review critical risks quarterly | [[pub:company:accountability_chart|Accountability Chart]] |
 | **CTO (Peter)** | Identify technical risks; implement controls; track patch deployment and incident response | [[pub:trust_center:iso_27001_overview|ISO 27001 Implementation]] | | **CTO (Peter)** | Identify technical risks; implement controls; track patch deployment and incident response | [[pub:trust_center:iso_27001_overview|ISO 27001 Implementation]] |