Writing for executives and managers on both sides of the IT-business divide, Westerman (Center for Information Systems Research, MIT Sloan School of Management) and Hunter, an executive consultant, define four types of IT risk: availability, access, accuracy, and agility. Citing numerous company examples, they introduce disciplines that enterprises must master to manage IT risk effectively. They provide a foundation of basic information on IT assets, roles, and supporting processes, then give advice for designing a risk governance process, and describe how to build a risk-aware culture that creates increased vigilance across the organization. The book's readership includes CIOs, business executives, board members, and midlevel IT managers. Annotation 穢2007 Book News, Inc., Portland, OR (booknews.com)