This report provides a detailed analysis of information security and risk management, focusing on the case of David Jones Pty Ltd, an Australian departmental store. The report begins by identifying common malware and threats faced by the organization, including viruses, worms, Trojans, ransomware, denial-of-service attacks, phishing, internal breaches, and spam. It then examines network devices, such as Wi-Fi networks, routers, and switches, highlighting their vulnerabilities to various cyberattacks. The report further explores strategies for ensuring the reliability and availability of the company's website hosted on Windows Server 2012, including the use of RAID, hybrid data centers, and cloud hosting services. It also covers measures for securing staff email security and integrity with Exchange Server. The report prioritizes threats to web and mail servers, such as malware, unauthorized access, data leakage, and DoS attacks. It then discusses methods for ensuring web and mail server availability, including RAID and cloud hosting. Finally, it examines the impact of human factors and organizational issues on IS-related security and risk management, emphasizing the importance of strong security policies, staff training, and robust logging and monitoring practices.