Episode 189: Conducting Risk Assessments (Domain 5) episode artwork

EPISODE · Jun 16, 2025 · 20 MIN

Episode 189: Conducting Risk Assessments (Domain 5)

from Certified: The CompTIA Security+ Audio Course · host Dr. Jason Edwards

Risk assessments provide the data organizations need to make informed security decisions, and in this episode, we explore the different types of assessments and how they’re conducted. We start by comparing ad hoc, recurring, one-time, and continuous assessments, each of which serves different operational or compliance needs. We explain how to scope an assessment, identify stakeholders, gather data, and evaluate controls to determine risk levels for systems, processes, or projects. Tools like questionnaires, interviews, vulnerability scans, and compliance checklists feed into both qualitative and quantitative models, supporting detailed prioritization and reporting. We also address how to align assessment timing with change management, regulatory deadlines, or business initiatives to maximize relevance. Conducting assessments isn’t just about checking boxes—it’s about uncovering blind spots, enabling dialogue, and guiding smart decisions.

Risk assessments provide the data organizations need to make informed security decisions, and in this episode, we explore the different types of assessments and how they’re conducted. We start by comparing ad hoc, recurring, one-time, and continuous assessments, each of which serves different operational or compliance needs. We explain how to scope an assessment, identify stakeholders, gather data, and evaluate controls to determine risk levels for systems, processes, or projects. Tools like questionnaires, interviews, vulnerability scans, and compliance checklists feed into both qualitative and quantitative models, supporting detailed prioritization and reporting. We also address how to align assessment timing with change management, regulatory deadlines, or business initiatives to maximize relevance. Conducting assessments isn’t just about checking boxes—it’s about uncovering blind spots, enabling dialogue, and guiding smart decisions.

NOW PLAYING

Episode 189: Conducting Risk Assessments (Domain 5)

0:00 20:00

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of Certified: The CompTIA Security+ Audio Course?

This episode is 20 minutes long.

When was this Certified: The CompTIA Security+ Audio Course episode published?

This episode was published on June 16, 2025.

What is this episode about?

Risk assessments provide the data organizations need to make informed security decisions, and in this episode, we explore the different types of assessments and how they’re conducted. We start by comparing ad hoc, recurring, one-time, and continuous...

Is there a transcript available for this episode?

Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.

Can I download this Certified: The CompTIA Security+ Audio Course episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!