experience determining security requirements by evaluating business strategies and requirements following a risk-based approach, and describe...