Chapter 1: Risk Introduction and Overview Flashcards
(15 cards)
Risk is the combination of ______ and ______.
Liklihood of an event and its impact
True or False: Risk is most often associated with uncertainties and deviations from expected results that can have an adverse impact to an enterprise and threaten the ability to meet its business objectives.
True
Liklihood can include _________ or _________.
Frequency or Probability
(Likelihood)
A measure of the rate by which events occur over a certain period of time.
Frequency
(Likelihood)
A mathematical-driven measure of the possibility of a specific outcome as a ratio of all possible outcomes. ________ represents the extent to the which an event is likely to occur, measured by the ratio of the studied cases or cases in question to the whole number of cases.
Probability
The result of a risk event that includes magnitude and consequence.
Impact
(Impact)
A measure of the potential severity of loss or the potential gain from realized events/scenarios.
Magnitude
(Impact)
A measure of the potential severity of loss or the potential gain from realized events/scenarios.
Magnitude
Something that happens at a specific place and/or time
Event
(Event)
Any event that is not part of the ordinary (standard) operation of a service and that causes or may cause an interruption to, or a reduction in the quality of that service.
Incident
(Event)
An event where the attacker takes advantage of a vulnerability.
Exploit
(Event)
An attempt to gain unauthorized access to make use of an asset.
Attack
________ is anything that is capable of acting against an asset in a manner that can result in harm and are aimed at exploiting enterprise vulnerabilities.
Threat
_______ is a control condition that is deemed to be deficient relative to requirements of the threat levels being faced by the Enterprise. They represent a weakness in the design, implementation, operation or internal control of a process that could expose the system to adverse threats from threat events.
Vulnerabilities
7 most common types of Business risk
Strategic Risk Environmental Risk Market Risk Credit Risk Operational Risk Compliance Risk Project Risk