nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #328

CERTIFIED-IN-CYBERSECURITY Question #328: Real Exam Question with Answer & Explanation

The correct answer is D: A threat is a potential source of harm, while a vulnerability is a weakness in a system. A threat is a potential source of harm, while a vulnerability is a weakness in a system (see ISC2 Study Guide, Module 2, under Threats and Vulnerabilities). A threat represents any event or situation that has the potential to cause harm. Regarding the remaining options, a vulnera

Security Principles

Question

What is the primary difference between a threat and a vulnerability?

Options

  • AA threat is a weakness in a system, while a vulnerability is a potential source of harm
  • BA threat is a type of attacker, while a vulnerability is an attack method
  • CA threat is an attack method, while a vulnerability is a type of threat actor
  • DA threat is a potential source of harm, while a vulnerability is a weakness in a system

Explanation

A threat is a potential source of harm, while a vulnerability is a weakness in a system (see ISC2 Study Guide, Module 2, under Threats and Vulnerabilities). A threat represents any event or situation that has the potential to cause harm. Regarding the remaining options, a vulnerability is a specific weakness or flaw in a system that an attacker can exploit. A threat is not a weakness in a system, nor is it an attack method. A vulnerability is not a potential source of harm or a type of

Topics

#Threats#Vulnerabilities#Cybersecurity Concepts#Risk Management

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions