With the high level of cyber-risk facing organisations today, taking a thorough look at their risk management processes can be one of the most important activities of the year. Conducting a regular IT risk assessment is an essential task to ensure that the business's compliance standards are met. However, going above and beyond regulatory mandates, it is also vital for an organisation to be aware of what risks it is facing and what should be done to mitigate the threat and the impact. With the high level of cyber-risk facing organisations today, taking a thorough look at their risk management processes can be one of their most important activities. Conducting a regular IT risk assessment is an essential task to ensure that the compliance standards of the business are met. However, going above and beyond regulatory mandates, it is also vital for an organisation to be aware of what risks it is facing and what should be done to mitigate the threat and the impact, says Michael Aminzade of Trustwave. © 2018 Elsevier Ltd