Week 10 Flashcards

1
Q

What is a threat in the context of cyber security?

A

A potential for loss, damage or destruction of assets or data caused by a cyber threat.

Threats can be adversarial, accidental, structural, or environmental.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Define vulnerability in cyber security.

A

A weakness in infrastructure, networks or applications that potentially exposes an organization to threats.

Vulnerabilities can lead to unauthorized access or data breaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does likelihood refer to in risk assessment?

A

The probability that a risk scenario could occur.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How is risk defined?

A

The potential for an unwanted or adverse outcome resulting from an incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is an asset in the context of cyber security?

A

Any valuable item, tangible or intangible.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the formula for calculating risk?

A

Risk = Threat x Vulnerability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does risk impact refer to?

A

The damage incurred by an event which causes loss of asset(s) or disruption of service(s).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does negligence mean in cyber security?

A

Failing to implement necessary security measures and controls, leaving systems vulnerable, or ignoring known risks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Define due care in the context of cyber security.

A

Taking reasonable steps to protect data by implementing security policies, procedures, and controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

A complete investigation process to identify potential cybersecurity risks is referred to as

A

due diligence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the three preferred approaches to risk assessment?

A
  • Quantitatively
  • Qualitatively
  • Semi-quantitatively.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a threat-oriented analysis approach?

A

Identification of threat sources and threat events.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What does an asset/impact-oriented analysis focus on?

A

Identification of impacts or consequences of concern and critical assets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly