Threat and Vulnerabilities Flashcards

1
Q

What is Threat?

A

Anything that could cause harm, loss, damage, or compromise to our information technology systems.

This threats are from external sources eg:
● Natural disasters
● Cyber-attacks
● Data integrity breaches
● Disclosure of confidential information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Vulnerability?

A

Any weakness in the system design or implementation.
Can come from internal factors like:
● Software bugs
● Misconfigured software
● Improperly protected network devices
● Missing security patches
● Lack of physical security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the intersection between Threat and Vulnerabilities

A

This is where the risk to enterprise systems and networks lies
■ Threat + no matching vulnerability = no risk
■ Vulnerability + no matching threat = no risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Risk Management

A

Finding different ways to minimize the likelihood of an outcome occurring and achieve the
desired outcome

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Risk

A

This is the possibility of a negative outcome due to the presence of threats and vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly