nerdexam
(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #1

An entity that acts to exploit a target organization's system vulnerabilities is a:

The correct answer is C. Threat Actor. A Threat Actor is defined as an individual or a group posing a threat (according to NIST SP 800- 150 under Threat Actor). A Threat Vector is a means by which a Threat Actor gains access to systems (for example: phishing, trojans, baiting, etc.). An Attacker is always an…

Security Principles

Question

An entity that acts to exploit a target organization's system vulnerabilities is a:

Options

  • AThreat
  • BThreat Vector
  • CThreat Actor
  • DAttacker

How the community answered

(51 responses)
  • A
    2% (1)
  • B
    4% (2)
  • C
    94% (48)

Explanation

A Threat Actor is defined as an individual or a group posing a threat (according to NIST SP 800- 150 under Threat Actor). A Threat Vector is a means by which a Threat Actor gains access to systems (for example: phishing, trojans, baiting, etc.). An Attacker is always an individual, but a Threat Actor can be either a group or an entity. A Threat is a circumstance or event that can adversely impact organizational operations that a Threat Actor can potentially explore through a

Topics

#Cybersecurity Terminology#Threat Actor#Security Concepts#Vulnerabilities

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY Practice