Threat and Vulnerabilities Flashcards
What is Threat?
Anything that could cause harm, loss, damage, or compromise to our information technology systems.
This threats are from external sources eg:
● Natural disasters
● Cyber-attacks
● Data integrity breaches
● Disclosure of confidential information
What is Vulnerability?
Any weakness in the system design or implementation.
Can come from internal factors like:
● Software bugs
● Misconfigured software
● Improperly protected network devices
● Missing security patches
● Lack of physical security
What is the intersection between Threat and Vulnerabilities
This is where the risk to enterprise systems and networks lies
■ Threat + no matching vulnerability = no risk
■ Vulnerability + no matching threat = no risk
What is Risk Management
Finding different ways to minimize the likelihood of an outcome occurring and achieve the
desired outcome
What is Risk
This is the possibility of a negative outcome due to the presence of threats and vulnerabilities