Having read the Acted notes and Sweeting reading, I'm left scratching my head as to:
1. What is the main takeaway from this chapter (6) -simply, that there are multiple frameworks produced by Gov'ts/other organisations?
2. What are the key practical differences between using the frameworks RAMP, COSO ERM, IRM/AIRMIC/Alarm, Orange Book, Canada RMF, AS/NZS 4360, ISO 31000?
Any help appreciated, including if can point me to relevant past exam questions.
1. What is the main takeaway from this chapter (6) -simply, that there are multiple frameworks produced by Gov'ts/other organisations?
2. What are the key practical differences between using the frameworks RAMP, COSO ERM, IRM/AIRMIC/Alarm, Orange Book, Canada RMF, AS/NZS 4360, ISO 31000?
Any help appreciated, including if can point me to relevant past exam questions.