Risk Assessment Flashcards

1
Q

What are the three processes of risk?

A

Risk assessment
Risk mitigation
Evaluation and Assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How is risk calculated?

A

Threat * Vulnerability * Impact

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the four categorisations of military risk?

A

Catastrophic
Critical
Marginal
Negligible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a threat tree?

A

Used in testing and auditing to find out where the weakest points are of a system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is SWOT?

A

Strengths
Weaknesses
Opportunities
Threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are system boundaries?

A

Good way of splitting up a major system into manageable parts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the limitations of system boundaries?

A

By separating out the experts some problems are localised and mitigated but some can get through boundaries.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the DREAD model for assessing threats?

A
Damage Potential
Reproducibility
Exploitability
Affected Users
Discoverability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly