Difference between revisions of "Team:Hamburg/Practices/Risks"

 
Line 10: Line 10:
 
   <ul>
 
   <ul>
 
     <li> Web based Risk Management tool</li>
 
     <li> Web based Risk Management tool</li>
     <li>Developed in cooperation with WMC company leading supplier of integrated information security management systems</li>
+
     <li>Developed in cooperation with WMC company, leading supplier of integrated information security management systems</li>
 
   </ul>
 
   </ul>
  
 
   <h3>Why adapt an IT security tool to a research project at a laboratory?</h3>
 
   <h3>Why adapt an IT security tool to a research project at a laboratory?</h3>
  
   <p>QSEC Biosafety gives you the possibility to evaluate each process of your research project by linking it to the used assets and information. Each risk concerning the integrity of the process itself and the person performing it, giving you a full risk
+
   <p>QSEC Biosafety gives you the possibility to evaluate each process of your research project by linking it to the used assets and information. Each risk concerns the integrity of the process itself and the person performing it, giving you a full risk
     report by classifying risk in categories A (high), B (middle) and C (low). You also have the option to integrate a legal directive and link them to your processes and assets to easy check of all are correctly executed.</p>
+
     report by classifying risks in categories A (high), B (middle) and C (low). You also have the option to integrate a legal directive and link it to your processes and assets to easily check, if all of them are correctly executed.</p>
  
 
   <figure>
 
   <figure>
Line 27: Line 27:
 
   <ol>
 
   <ol>
 
     <li>Organize your project in individual processes</li>
 
     <li>Organize your project in individual processes</li>
     <li>Rate criticality of each process considering confidentiality, integrity, availability</li>
+
     <li>Rate criticality of each process considering confidentiality, integrity and availability</li>
  
 
     <figure>
 
     <figure>
Line 41: Line 41:
 
     </figure>
 
     </figure>
  
     <li>Rate the assets criticality considering confidentiality, integrity, and availability</li>
+
     <li>Rate the assets criticality considering confidentiality, integrity and availability</li>
 
     <li>Determine threats and vulnerabilities and rate them</li>
 
     <li>Determine threats and vulnerabilities and rate them</li>
 
     <li>Get full risk report about your A,B and C risks</li>
 
     <li>Get full risk report about your A,B and C risks</li>
Line 59: Line 59:
 
   <h3>Perspective</h3>
 
   <h3>Perspective</h3>
  
   <p>This method gives you a detailed overview of all your potential risks within biological research and allows you evaluate and manage them. This could be of special interest if you planning a research project in for example the field of molecular virology,
+
   <p>This method gives you a detailed overview of all your potential risks within biological research and allows you to evaluate and manage them. This could be of special interest, if you are planning a research project in for example the field of molecular virology,
     where the exposure to dangerous biological material is omnipresent. In addition to the shown aspects of the software you can add measurements to each risks in the next step and keep track of your improvement in implementing these. A big advantage
+
     where the exposure to dangerous biological material is omnipresent. In addition to the shown aspects of the software you can add measurements to each risk in the next step and keep track of your improvement in implementing these. A big advantage
 
     as well is the function to integrate a legal directive. We for example included the ‘Directive 2000/54/EC of the European parliament on the protection of workers from risks related to exposure to biological agents at work’. This method can be customised
 
     as well is the function to integrate a legal directive. We for example included the ‘Directive 2000/54/EC of the European parliament on the protection of workers from risks related to exposure to biological agents at work’. This method can be customised
     to each research project in an individual lab and allows you to improve biosafety to an big extant as well as saving potential cots due to damage and loss of data.</p>
+
     to each research project in an individual lab and allows you to improve biosafety to an big extent as well as saving potential costs due to damage and loss of data.</p>
  
 
</div>
 
</div>

Latest revision as of 00:01, 19 September 2015

Risk Assessment

This Risk Assessment will available for all iGEM Teams soon!

What is QSEC?

  • Web based Risk Management tool
  • Developed in cooperation with WMC company, leading supplier of integrated information security management systems

Why adapt an IT security tool to a research project at a laboratory?

QSEC Biosafety gives you the possibility to evaluate each process of your research project by linking it to the used assets and information. Each risk concerns the integrity of the process itself and the person performing it, giving you a full risk report by classifying risks in categories A (high), B (middle) and C (low). You also have the option to integrate a legal directive and link it to your processes and assets to easily check, if all of them are correctly executed.

Calculation of the risks

Exemplary implementation

  1. Organize your project in individual processes
  2. Rate criticality of each process considering confidentiality, integrity and availability
  3. Evaluation of the processes
  4. Link required assets to each process
  5. Combination with the asset groups
  6. Rate the assets criticality considering confidentiality, integrity and availability
  7. Determine threats and vulnerabilities and rate them
  8. Get full risk report about your A,B and C risks
  9. List of the discovered risks
    Categorization of the risks into critical (red), mediocre (yellow) and uncritical (green) ones

Perspective

This method gives you a detailed overview of all your potential risks within biological research and allows you to evaluate and manage them. This could be of special interest, if you are planning a research project in for example the field of molecular virology, where the exposure to dangerous biological material is omnipresent. In addition to the shown aspects of the software you can add measurements to each risk in the next step and keep track of your improvement in implementing these. A big advantage as well is the function to integrate a legal directive. We for example included the ‘Directive 2000/54/EC of the European parliament on the protection of workers from risks related to exposure to biological agents at work’. This method can be customised to each research project in an individual lab and allows you to improve biosafety to an big extent as well as saving potential costs due to damage and loss of data.

We thank our sponsors: