1. ISO - International Organization for Standardization: Information technology: information security risk management, ISO/IEC 27005 (2011)
2. NIST - National Institute of Standards and Technology: Guide for applying risk management framework to federal information systems. NIST Special Publication 800-37 Revision 1 (2010)
3. NIST - National Institute of Standards and Technology: Guide for conducting risk assessment. NIST Special Publication 800-30 Revision 1 (2011)
4. NIST - National Institute of Standards and Technology: Managing information security risk. NIST Special Publication 800-39 (2011)
5. NIST - National Institute of Standards and Technology: Information security continuous monitoring (ISCM) for federal information system and organizations. NIST Special Publication 800-137 (2011)