Risk management Flashcards
1
Q
What is risk in information security?
A
The potential for loss or damage due to a threat.
2
Q
What is information assurance?
A
Measures to protect and restore information systems.
3
Q
What is the Asset-Threat-Vulnerability model?
A
Framework for assessing security risks.
4
Q
Name four risk treatment options
A
Apply controls, transfer risk, avoid risk, accept risk.
5
Q
What are types of security controls?
A
Preventive, Detective, Corrective.