1: 6 Understanding Vulnerability Types Flashcards
What is the cybersecurity CIA Triad?
Confidentiality, Integrity, Availability
Confidentiality
Protects information from unsecure eyes
Integrity
Protects information from unauthorized modification
Availability
Ensures information available when needed
What are the different types of risks an organization might face due to cybersecurity threats?
Financial, Reputational, Strategic, Operational, Compliance
Financial Risk
Monetary loss to the organization
Reputational Risk
Loss of goodwill due to loss of reputation regarding an organization
Strategic Risk
Jeopardizes the ability to meet our major goals and objectives
Operational Risk
Threatens ability to carry out day-to-day activities
Compliance Risk
Running afoul of regulatory or legal requirements
End of Sale
Vendor will still support the product
End of Support
Vendor will discontinue some/all support
End of Life
Vendor will no longer release updates
What are 2 risks associated with vendors?
Understaffed- Inadequate support for existing products
Embedded Systems not being disclosed
Default Configurations
Using misconfigured firewalls, open permissions, default passwords, unsecured root accounts leading to vulnerabilities