home/dictionary/Information Security risk

Information Security risk

nounverified· unreviewed·updated Aug 30, 2026

The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.

Framework senses

FFIEC Cybersecurity Assessment Tool, Baseline, May 20171 senseview framework →
§1
The combination of the probability and severity of impact that results from a threat successfully breaking through a vulnerability in security and attacking the organization's information.
NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
NIST SP 800-301 senseview framework →
§1
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
Legacy lexicon import1 senseview framework →
§1 · legacy_primary
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
DR-088 backfill from the noun definition column