IT Risk Management

IT risk management is a type of risk management that prevents risks related to an association’s information technology systems and data. The goal of IT risk management is to protect the association from cyber threats, like data breaches, that could hurt its members and damage trust in its democratic processes. IT risk management requires ongoing efforts like risk assessments, security controls, continuous monitoring, and incident response plans. However, it does require a robust cybersecurity plan and expertise, so many associations hire internal IT professionals or outsource to a vendor to ensure ongoing security.

« Back to SBS Glossary