 |
An executive summary |
 |
Overview of the assessment scope and objectives |
 |
Assumptions and limitations of the assessment |
 |
Methods and tools used |
 |
Design of the current environment or systems with applicable diagrams |
 |
Security requirements |
 |
Summary of findings and recommendations |
 |
Assessment results: |
| |
 |
General control review |
| |
 |
Vulnerability test |
| |
 |
Risk assessment, including identified assets, threats, vulnerabilities, impact and likelihood assessment, and the risk results analysis |
 |
Recommended actions |