Risk Management II
2015-2016 - IMT6061 - 5 ECTS



Expected learning outcomes

The course contributes towards the following learning outcomes:


  • Knows state of the art on key aspects of Risk Management relevant to Information Security.
  • Is able to judge to what extent a particular method for Risk Analysis is appropriate for a given problem.


  • Can formulate research challenges in relation to Information Security Risk  Management
  • Can challenge established practises in the field of Information Security Risk Management

General competence

  • Can participate in international discussions on the subject of Information Security Risk Management


  •  Classifications of Risk Management methods
  •  Examples of Risk Management Methods.
  •  Decission theory
  •  Risk, Threat and vulnerability discovery
  •  Uncertainty
  •  Game theory

Teaching Methods


Form(s) of Assessment

Oral exam, individually
Evaluation of Project(s)

Form(s) of Assessment (additional text)

  •  Project(s)
  •  Oral exam (individual)
  •  Both parts must be passed

The students are required to hand in their own report(s).

Grading Scale


External/internal examiner

Evaluated by external and internal examiner.

Re-sit examination

The whole subject must be repeated.

Examination support

Approved calculator

Coursework Requirements

Draft project report including scenario suitable as a basis for the other chapters.  The draft report must be submitted via Fronter within 10 days of the first lecture. 

Teaching Materials

Books, articles and WEB resources such as

RA method classification   

RA method examples   

Decision theory   

Risk Threat and Vulnerability discovery   

Game theory   

Additional information

There is room for 50 students for the course.