This article is centered in identifying which is the methodology Risk analysis that provides a better chance in making decisions within an organization, since information has become one of the most important assets from the business and its use is necessary to ensure the security and business continuity. There are several methodologies for risk analysis as: OCTAVE, MEHARI, MAGERIT, CRAMM, NIST SP 800-30 and EBIOS, those are oriented towards the same goal and which have characteristics that make them attractive in the business scope. From the study made in enterprise ECO - VOLTIO, it has been determined that MAGERIT seems to be the most effective and complete because it protects the information regarding for integrity, confidentiality, availability and other important features to ensure the security of the systems and processes of the organization. The application of risk analysis methodologies will help organizations gain more control over their assets, its value and threats that may impact them, forcing them to select security measures to ensure the success of their processes and increased competitiveness in the business world.