Refsdal Ch2 Flashcards

1
Q

Risk

A

The likelihood of an incident and its consequence for an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Incident

A

An event that harms or reduces the value of an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Asset

A

Anything of value to a party

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Party

A

An organization, company, person, group or other body on whose behalf a risk assessment is conducted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Likelihood

A

The chance of something to occur

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Consequence

A

The impact of an incident on an asset in terms of harm or reduced asset value

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Risk level

A

The magnitude of a risk as derived from its likelihood and consequence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Risk management

A

comprises coordinated activities to direct and control an organization with regard to risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Risk assessment process

A
Step 1: Context establishment
Step 2: Risk identification
Step 3: Risk analysis
Step 4: Evaluation
Step 5: Risk treatment
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

The target of asessment

A

is the parts and aspects of the system that are the subject of the risk assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

A system

A

is a set of related entitietes that forms an integrated whole and has a boundary to its surroundings

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

A vulnerability

A

A weakness, flaw or deficiency that can be exploited by a threat to cause harm to an asset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A threat

A

is an action or event that is caused by a threat source and that may lead to an incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

A threat source

A

is the potential cause of an incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Risk identification questions

A

What are the threat sources?
What are the threats?
What are the risks?
What are the vulnerabilities?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

A treatment

A

is an appropriate measure to reduce risk level