Chapter 1 Risk Management Flashcards

Defining Business Risk

1
Q

What is a threat in the context of business risk?

A

Anyone or anything threatening to grab any information

Threats can include external entities or internal vulnerabilities that pose a risk to the confidentiality, integrity, or availability of information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a vulnerability?

A

Weaknesses or gaps in our security that allows threats to access our assets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is risk?

A

Risk is the potential for a threat to exploit a vulnerability and cause harm to our assets

None

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is cybersecurity primarily about?

A

Understanding and protecting our assets

Assets can include data, networks, and systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a key aspect of cybersecurity related to potential threats?

A

Recognizing risk

Risk recognition involves identifying potential threats to information security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does cybersecurity aim to address in relation to systems and data?

A

Addressing vulnerabilities

Vulnerabilities are weaknesses that can be exploited by threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the goal of cybersecurity in terms of risk management?

A

Minimizing the risk

This involves implementing strategies to reduce the likelihood of security breaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does the CIA Security Triad stand for?

A

Confidentiality, Integrity & Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the primary purpose of the CIA Security Triad?

A

It is the backbone of cybersecurity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What does confidentiality ensure?

A

Data is only accessible to those who have the authority to view it.

Confidentiality is a key principle in information security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does integrity ensure in data management?

A

Integrity ensures data remains unaltered and genuine.

Without integrity, systems and data can’t be trusted.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does availability ensure?

A

Systems, applications, and data are available and operational when needed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly