This report addresses interoperable risk management: the interoperability of organizations that engage in risk management in the context of a system of systems. The state of risk practice management—the specification of standards and the methodologies to them implement—is addressed and examined with respect to the needs of system-of-systems interoperability. The current practice is found to be insufficient to achieve interoperability with regard to risk management. A number of research questions are raised to associate this topic with the needs of the larger context of interoperable acquisition.
This report is related to the following area(s) of work:
Technical Note
CMU/SEI-2006-TN-032
August 2006