This session provides practical advice to conduct cybersecurity assessments. It details the end-to-end process including: scoping, 15 steps to develop work papers, scheduling and on-site assessment. Includes techniques to add risk opportunistic controls and for new assessments year-over-year. Concludes with assessment report and slide deck frameworks, including tips for briefing executives.