6. Legal, Risk and Compliance - 1. Risk Assessment

0.0(0)
studied byStudied by 0 people
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/13

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

14 Terms

1
New cards

risk assessment

What type of assessment identifies and prioritizes risks?

2
New cards

Threat

What is the term for some external force that jeopardizes the security of your information or systems?

3
New cards

Threat Vector

What are the specific methods that threats use to exploit a vulnerability?

4
New cards

Risk

What is the combination of a vulnerability and a corresponding threat?

5
New cards

Because we have to carefully think about the environments in which we operate.

How does cloud computing complicate our risk assessment process?

6
New cards

By likely hood and impact

How are risks ranked?

7
New cards

True

True or False?

Security professionals performing a quantitative risk assessment do so for a single risk asset pairing at a time.

8
New cards

Exposure Factor (EF)

What is the expected percentage of damage to an asset?

9
New cards

asset value(AV) * exposure factor(EF) - single loss expectancy (SLE)

What is the formula for the single loss expectancy (SLE)?

10
New cards

single loss expectancy (SLE) * annualized rate of occurrence (ARO) = annual loss expectancy (ALE)

What is the formula for the annual loss expectancy (ALE)?

11
New cards

Mean Time to Failure (MTTF)

Quantitative techniques also help us assess our ability to restore IT services and components quickly in the event of a failure. For non-repairable assets, those that we cannot fix, what is the important metric?

12
New cards

Mean Time to Failure (MTTF)

What is the term that describes the average time a nonrepairable component will last?

13
New cards

Mean Time Between Failures (MTBF)

What term describes the average amount of time that passes between failures of a repairable asset?

14
New cards

Mean Time To Repair (MTTR)

What term describes the amount of time that an asset will be out of service for repair each time that it fails?