Section 5.2 Flashcards

1
Q

What is ARO?

A

Annualized Rate of Occurrence provides a metric of how likely it is that something will happen.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is AV?

A

Asset Value (AV) is the value of the asset to the organization. This may include the cost of the asset, its effect on company sales, potential regulatory fines, etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is EF?

A

Exposure Value (EF) is a percentage of the value lost due to an incident. For example losing a quarter of the value is .25, and losing the entire asset is 1.0.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is SLE?

A

Single Loss Expectancy is the monetary loss if a single event occurs. The formula is AV x EF. For example if a laptop is stolen then the AV is 1000 and since its stolen the EF is 1.0, so 1000 x 1.0 = $1000 SLE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is ALE?

A

Annualized Loss Expectancy (ALE) is the ARO x SLE. So if 7 laptops were lost then 7x1000 = $7000 ALE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a risk appetite?

A

Risk appetite is the amount of accepted risk before taking any action to reduce that risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is RTO?

A

Recovery Time Objective is the amount of time it will take to recover from an event and be back up and running.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is RPO?

A

Recovery Point Objective (RPO) is a point in time in which we can say were now up and running. For example we may need to have a total of 12 months of customer data recovered in our database for us to say that we are back up and running.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is MTTR?

A

Mean time to repair (MTTR) is the average time required to fix an issue. For example how long it will take someone to diagnose a problem, buy the new asset and replace the asset.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is MTBF?

A

Mean time between failures (MTBF) is the time estimated time that the system will run before there is another outage. This helps to plan out when the system might go down again.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly