nerdexam
(ISC)2

SSCP · Question #924

What can be defined as an event that could cause harm to the information systems?

The correct answer is B. A threat. A threat is an event or activity that has the potential to cause harm to the information systems. A risk is the probability that a threat will materialize. A vulnerability, or weakness, is a lack of a safeguard, which may be exploited by a threat, causing harm to the…

Submitted by certguy· Apr 18, 2026Security Concepts and Practices

Question

What can be defined as an event that could cause harm to the information systems?

Options

  • AA risk
  • BA threat
  • CA vulnerability
  • DA weakness

How the community answered

(43 responses)
  • A
    2% (1)
  • B
    91% (39)
  • C
    5% (2)
  • D
    2% (1)

Explanation

A threat is an event or activity that has the potential to cause harm to the information systems. A risk is the probability that a threat will materialize. A vulnerability, or weakness, is a lack of a safeguard, which may be exploited by a threat, causing harm to the information systems.

Topics

#threats#information security concepts#risk management fundamentals

Community Discussion

No community discussion yet for this question.

Full SSCP Practice