Briefly answer the following questions. Use facts and examples to support your position. Use APA style for any references.
When you deliver risk ratings for your organization, you must use the organizations risk preferences instead of your own risk preferences. This is because risk assessment is for finding the organizations risk tolerance and not your personal risk tolerance.
What is the risk posture for each individual system as it contributes to the overall risk posture of the organization?
How does each attack surface add up to a systems particular risk posture? These include capabilities, methods and goals of any protections, particularly in the presence of an active threat agent.
In addition, how do all the systems risk sum up to an organizations computer security risk posture?

