Risk Management Resources

Back to:  VRC Approach  |  VRC Tool Box

Compiled by: Nancy Y. McGovern and Anne R. Kenney
Last revised: May 2002

Notable Web sites
The Canadian Treasury Board's Common Look and Feel for the Internet

Carnegie Mellon's CERT® Coordination Center

Department of Justice, A Guide to Disability Rights Laws, August 2001

National Cancer Institute's Web Design and Usability Guidelines

National Library of Australia:
•  Safeguarding Australia's web resources: guidelines for creators and publishers
•  Safekeeping Project with sponsors

W3C Guidelines

Domain Web site examples
Insurance Providers:
•  the International Risk Management Institute (IRMI)
Healthcare Providers:
•  the Risk Management Foundation: Harvard Medical Institutions
•  the American Society for Healthcare Risk Management ASHRM of the American Hospital Association
Nonprofit Organizations:
•  the Public Risk Management Association PRIMA: Nonprofit Risk Management Center and Public Entity Risk Institute
•  Nonprofit Risk Organization
Environmental Monitoring:
•  the National Risk Management Research Laboratory (NRMRL)
Financial Investors:
•  the Global Association of Risk Professionals (GARP)
•  The Risk Management Association (RMA)

Publications

Bailar, Gregor, "Nasdaq Lessons Learned from Sept. 11"

BindView Corporation, "Risk Management: The New IT Challenge," white paper, March 2000.

Blundon, William, "Security is in the eye of the beholder."

Bridgewater Systems, "Policies and Profiles: The Keys to Success in Mobile Data Services," white paper, 2001.

Byrnes, Christian F., "Information Risk Management: Why Now?" white paper, 1999.

Chapple, Mike, "SQL Server Disaster Recovery."

Cohen, Fred, "Managing Network Security: Attack and Defense Strategies," white paper, July 1999.

Computer Sciences Corporation, "Information Risk Management Program IRMP: An Overview," white paper, April 2001.

Cooper, Michael D. "Design Considerations in Instrumenting and Monitoring Web-based Information Retrieval Systems," Journal of the American Society for Information Science, 49 10:903-919, 1998.

Davis, Philip, "The Effect of the Web on Undergraduate Citation Behavior-a year 2000 update," forthcoming College and Research Libraries, January 2002.

Edupage, "President Forms Cyberterrorism Panel," Educause, October 17, 2001.

Elsevier Science, "Information on Electronic Back Files, Access and Archiving."

Flecker, Dale, "Preserving Scholarly E-Journals," D-Lib Magazine, September 2001 Volume 7 Number 9.

Geer, Daniel, E., Jr., "Risk Management is Where the Money Is", reprint of an address before the Digital Commerce Society of Boston, November 3, 1998.

Hamilton, Caroline R., "New Trends in Risk Assessment, white paper, 1998.

Harral, William M., "The Roles and Inter-relationships of Risk Management and Quality Management Systems Auditing," white paper, 1998.

Herman, Melanie L. and Barbara B. Oliver "Teambuilding: Rx for Crisis Survival," 10 September 2001.

Horgan, Daniel, "Five thoughts about Cyberterrorism."

Kabay, M.E. "ICSA White Paper on Computer Crime Statistics," 1998.

Kenney, Anne R., and Oya Y. Rieger, Moving Theory into Practice: Digital Imaging for Libraries and Archives, Research Libraries Group, 2000.

Kenney, Anne R., Nancy Y. McGovern, Peter Botticelli, Richard Entlich, Carl Lagoze, and Sandra Payette, "Preservation Risk Management for Web Resources: Virtual Remote Control in Cornell's Project Prism," D-Lib Magazine, January 2002.

Kirschbaum, Dennis M., "Six Tips for Playing it Safe: At Work, At Home, on the Web."

Kleindorfer, Paul R. "Industrial Ecology and Risk Analysis."

Kloman, H. Felix, "The Risk Management Spectrum," Risk Management Reports, 2001.

Kovacs, Paul and Howard Kunreuther, "Managing Catastrophic Risk: Lessons from Canada," in Institute for Catastrophic Loss Reduction Research Paper.

Kunreuther, Howard, Patricia Grossi, Nano Seeber and Andrew Smyth, "A Framework for Evaluating the Cost-Effectiveness of Mitigation Measures," paper presented at the Bogazici University /Columbia University Workshop.

Kunreuther, Howard in Bruna de March ed. "Incentives for Mitigation Investment and More Effective Risk Management: The Need for Public-Private Partnerships" Special Issue on Risk and Governance, Journal of Hazardous Materials, 2001.

Kunreuther, Howard coordinating author, Chris Cyr, Patricia Grossi and Wendy Tao, "Using Cost-Benefit Analysis to Evaluate Mitigation - Measures for Lifelines," April 2001.

Kunreuther, Howard and Christian Schade, "Worry and Mental Accounting with Protective Measures," white paper, February 2001.

Lagoze, Carl, William Arms, Stoney Gan, Diane Hillmann, Christopher Ingram, Dean Krafft, Richard Marisa, Jon Phipps, John Saylor, Carol Terrizzi, Walter Hoehn, David Millman, James Allan, Sergio Guzman-Lara, Tom Kalt, "Core Services in the Architecture of the National Digital Library for Science Education (NSDL)," submitted to JCDL, 2002.

Lawrence, Greg, William Kehoe, Oya Y. Rieger, William Walters, and Anne R. Kenney, Risk Management of Digital Information: A File Format Investigation. Washington, DC: Council on Library and Information Resources, 2000.

Lawrence, H. Andrew, "Digital Insurance for Information at Risk: A Strategic Overview of Digital Preservation," white paper, Eastman Kodak Company, 2000.

Long, Marian H., "Business Interruption Risk Assessment: A Multidisciplinary Approach," white paper, 1997.

Luh, James C., "No Bots Allowed," Special to Interactive Week, April 12, 2001.

Marvell, Simon, "Business Continuity Management in the 21st Century," no date.

McClure, Charles R. and J. Timothy Sprehe, Guidelines For Electronic Records Management On State And Federal Agency Websites, an NHPRC-funded research project conducted in 1997.

McClure, Sprehe and Kristen Eschenfelder, Performance Measures for Federal Agency Websites, 2000.

McNamee, David, "Assessing Risk Assessment," Management Control Concepts.

Meinel, Carolyn, "Code Red for the Web," Scientific American, October 2001: 42-51.

Mulcahy, Ryan, compiler, "'First Alert' system sought for Internet, Feds Discuss Data Sharing, and More," CIO Magazine, October 25, 2001.

Nonprofit Risk Organization, "Risk Assessment Tool Offers Customized Help."

Nonprofit Risk Organization, "Beyond the Bend in the Road: The Nonprofit Risk Management Center Offers Predictions for the Year Ahead"

Nonprofit Risk Organization, "Making Net Gains: Staying Safe While Making a Name for Your Nonprofit on the Internet."

Nonprofit Risk Organization, Full Speed Ahead: Managing Technology Risk in the Nonprofit World.

Nonprofit Risk Organization, "eNoculation."

Nonprofit Risk Organization, Protecting Your Nonprofit and the Board.

Nonprofit Risk Organization, Vital Signs: Anticipating, Preventing and Surviving a Crisis in a Nonprofit.

OECD, Chemical Accident Risk Assessment Thesaurus CARAT™.

Paperwork Reduction Act, 1995.

Paul, Brooke, "Risk-Assessment Strategies," CMP Media, white paper, October 30, 2000.

Perrin, Jerry, "ERM and September 11."

Rosenthal, Ira, Al Ignatowski, C. Kirchsteiger, "A Generic Standard for the Risk Assessment Process:..", Discussion on a proposal made by the program committee of JC-J, RC Workshop on 'Promotion of Technical Harmonization of Risk-Based Decision Making', September 2001.

Scalet, Sarah D., "Cyberterrorism Is Everyone's War," CIO Magazine, October 11, 2001.

Scall, Eric, "Liability Trends for Nonprofit Organizations."

Symantec Enterprise Solutions, "A Comprehensive Risk Management Guide," June 2000.

Vaknin, Sam, "Bright Planet, Deep Web."

Vaknin, Sam, "Internet: A Medium or a Message? - Part 1."

VeriSign, Inc. "Journey to the Right of the Dot: ICANN's New Web Extensions," white paper, May 9, 2001.

Wood, Angus, "Integrating Risk Assessment into the Enterprise Information Management Strategy," presented at the 6th International Pipeline Reliability Conference, November 19-22, 1996, Houston, Texas.