What is the definition of a threat according to ISO/IEC 27000?
Comprehensive and Detailed Explanation From Exact Extract ISO/IEC 27000 standards:
According to ISO/IEC 27000:2018, Clause 3.74, a threat is defined as:
''Potential cause of an unwanted incident, which can result in harm to a system or organization.''
This definition directly matches option A.
Option B refers to an ''information security incident'' (ISO/IEC 27000:2018, Clause 3.32).
Option C describes a ''vulnerability'' (ISO/IEC 27000:2018, Clause 3.67).
Option D refers to ''residual risk'' (ISO/IEC 27000:2018, Clause 3.61).
The standard emphasizes that threats exploit vulnerabilities, causing incidents that can harm information confidentiality, integrity, and availability. Correctly identifying threats is critical for risk assessment (Clause 6.1.2). Thus, the correct definition per ISO/IEC 27000 is A.
Dallas
3 months agoVilma
3 months agoGayla
3 months agoJina
4 months agoRebeca
4 months agoJesusa
4 months agoViola
4 months agoNoel
4 months agoPhillip
4 months agoZona
5 months agoCassandra
5 months agoEileen
5 months agoLina
5 months agoLuisa
5 months agoElliott
6 months agoVenita
6 months agoSarah
6 months agoAnglea
6 months agoMarci
7 months agoScot
7 months agoJusta
7 months agoLoreta
2 months agoJohnetta
2 months agoRickie
2 months agoJani
6 months agoJaleesa
7 months agoChaya
7 months agoDesmond
8 months agoDominga
8 months ago