Business Impact Assessment, Vulnerability Assessment, Penetration Test, And Risk Assessment

937 Words2 Pages

Create or find definitions for Business Impact Assessment, Vulnerability Assessment, Penetration Test, and Risk Assessment.. The goal of a Business Impact Assessment is to look at each asset that has a risk of being compromised and identify all of the impacts the loss of the asset would or could have on the business’s operations. This can be used to identify whether the level of risk that an asset has is within an acceptable level and properly protect the assets that are important to the business need. The goal of durability assessment is to identify all of the possible threats that are valuable of being exploited. This identifies all of assets vulnerabilities that could be exploited. The vulnerability assessment results can be crucial in …show more content…

This scan then returns a list of threats to a system such as unapplied updates, unneeded services or plugins, and other items that could be exploited to gain access to or disrupt a system operation. A penetration test is not a vulnerability assessment, but the information gathered can be important for vulnerability assessment process. A risk assessment is the process of assessing the level of risk an asset or a business has based on the number of variabilities and business impact that would be occurred if these vulnerabilities are exploited. This intern allows the business to mitigate these vulnerabilities so they can manage the level of risk to their business. What are the differences and similarities between them? There are many similarities and differences between Business Impact Assessment, Vulnerability Assessment, Penetration Test, and Risk Assessment. This is because they are all used as part of the overall risk management process and many produce information that is critical for other assessment. For example the information from a Business Impact Assessment and Vulnerability Assessment can provide information that is crucial for the successful completion of a risk assessment. This goes the same with a penetration test which provides important information for a vulnerability …show more content…

You would use a penetration test in most cases if you were trying to perform system hardening. This allows you to identify potential threats. A vulnerability assessment on the other had would be performed to identify which of the potential threats that a system has are vulnerable to being exploited. A business impact assessment is used to then look at each of the systems that are vulnerable and identify there criticality to the business operations and the possible impact that would result if the asset was unusable or compromised. A risk assessment, on the other hand, is used to look at all of this information and then place a level of risk on an asset. The organization that cans then decide if the level of risk is acceptable for the asset and if not they can take steps to lover this risk

More about Business Impact Assessment, Vulnerability Assessment, Penetration Test, And Risk Assessment

Open Document