Exception Management

Exception management is the process of identifying and handling requirements that deviate from accepted policies or regulations. Exceptions have the potential to introduce risk and non-compliance, which may be acceptable as long as that risk is clearly identified, the potential associated costs and vulnerabilities are understood, and a method is created for ongoing tracking and management of that exception. Exception management may include a description of the technology, process or standard that will be affected. It should also include an assessment of why the standard policy or process needs to be violated, and security measures that will be taken to reduce risk.