Risk and Trust Flashcards

1
Q

Definitions Asset Threat:

A

Asset: What we want to protect
Threat: Harm that can happen to an asset
Attack: A threatening event
Attacker: The agent causing an attack (not necessarily human)
Vulnerability: A weakness in the system that makes an attack more likely to succeed
Risk: A quantified measure of the likelihood of a threat being realised
Impact: A measure of the seriousness of a threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Risk analysis problems

A

Cant know all threats and vulnerability probabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Impact evaluation

A

Identify threats for all assets, identify impact of thread on 1-10 scale, qualitative scales work better

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Risk handling

A

Ignore it, Remove it completely by withdrawing, implement counter measures(can introduce new risks)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Human risk biases

A

Underestimate or ignore: Risks that havent happened or small risks
Overestimate: Recent risk, vivid but rare events
Lean towards inaction in cases

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Illusion of Certainty, Thermostat

A

Known Risks are assumed to be prevented, thinking risk can be calculated
Thermostat: When risk taking rewarded without problem => more risk taking
Comfort Zone: Prefer risks we understand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Risk compensation

A

Risk taking is increased after introducing measures to reduce risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

3 types of risks

A

Through science: Viral infections
Virtual risk: Anything without scientific consensus
Experienced directly: Climbing tree and falling down

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Trust Requirments

A

Trust only required in situations of risk and uncertainty, scan for trust signs (lock, social media signs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Trust vs Reliance

A

At the start: Trust, After multiple succesful interactions: Reliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Symbols vs Symptoms

A

Symbol: Badge or Seal which shows trustability
Symptom: Signals giving of by trustee

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Reputations system problems

A

Attackers may subvert them, Trustors dont get reward for feedback, Reputation may become hostage for trustors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Trust in organizations

A

Not trusting damages productivity, disables positive behavior and is often unrealistic
=> Start from position of trust and if threat is to big ensure that its not personal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Trust halo and horns

A

Positive Experience => Trust into other products
Negative Experience => No trust in other products
Hard to win trust and easy to lose

How well did you know this?
1
Not at all
2
3
4
5
Perfectly