2.3: Review the results of risk and control analysis to assess any gaps between current and desired states of the IT risk environment. - eduVyne - Providing Certification Training Services Globally