6. Vulnerability Types Flashcards
Vulnerability impact
Vulnerability impact
Vulnerabilities expose organizations to security breaches.
Information security goals
Vulnerability impact
Confidentiality, integrity, and availability.
Confidentiality
Vulnerability impact
Unauthorized changes, hacker alterations, service disruption.
Integrity
Vulnerability impact
To prevent unauthorized changes to information.
Availability
Vulnerability impact
Authorized access, denial of service attacks.
Financial risk
Vulnerability impact
Costs, incident response, data theft, identity theft.
Reputational risk
Vulnerability impact
Negative publicity, loss of goodwill, stakeholder decisions.
Strategic risk
Vulnerability impact
Impact on goals and objectives, product development, competition.
Operational risk
Business process slowdown, customer order delays, manual workarounds.
Compliance risk
Vulnerability impact
Legal and regulatory violations, HIPAA, sanctions, fines.
Evaluating impacts
Vulnerability impact
Categorizing risks, financial, reputational, strategic, operational, compliance.
Supply chain vulnerabilities
Supply chain vulnerabilities
IT organizations rely on external vendors for hardware, software, and services.
Impact on organizations
Supply chain vulnerabilities
Security issues in the supply chain can affect organizational operations.
End-of-life announcements
Supply chain vulnerabilities
Security professionals must monitor vendor announcements about product lifecycle terminations.
Importance of patch management
Supply chain vulnerabilities
Timely patch updates protect systems against new vulnerabilities.
Running products without patches
Supply chain vulnerabilities
End-of-life announcements mean no more patches, making it difficult to maintain secure systems.