Context-Aware Security Assessment Form
Use this form to evaluate the security risks and controls of a specific environment, system, or workflow. Please answer each section to provide a clear and actionable assessment.
Assessment Context (Describe the environment, system, or workflow being evaluated)
*
What is the primary purpose of this environment, system, or workflow?
*
Overall Security Risk Level
*
Low
Moderate
High
Critical
How effective are the current security controls?
*
Not effective
1
2
3
4
Highly effective
5
1 is Not effective, 5 is Highly effective
How likely is it that a security incident could occur?
*
Very unlikely
1
2
3
4
Very likely
5
1 is Very unlikely, 5 is Very likely
Please rate the following security dimensions:
*
Rows
Not Adequate
Needs Improvement
Adequate
Strong
Access Control
1
2
3
4
Data Protection
5
6
7
8
Monitoring & Logging
9
10
11
12
Incident Response
13
14
15
16
Physical Security
17
18
19
20
Which of the following best describes the frequency of security reviews for this environment?
*
Never
Annually
Quarterly
Monthly
Other
List the top 1-2 security risks you have identified.
*
What improvements or additional controls would you recommend?
Submit Assessment
Should be Empty: