home/glossary/Information Security risk

Information Security risk

nounid 2888·updated Aug 30, 2026
verified· unreviewed

The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.

MWE

Attested in

No recorded attestations. They are written when an MWE tagging stage is completed, stamped with the pack version and the document’s digest.

Classifications

Entity Type

Metric0%rule-basedmulti_axis_classifier_low_confidence.v1

Sensitivity

Regulated85%llm-generatedllm:claude-haiku-4-5

Information Class

Cui65%llm-generatedllm:claude-haiku-4-5

Variants

plural
Information Security risks
possessive
Information Security risk's
pluralpossessive
Information Security risks'

Framework definitions

FFIEC Cybersecurity Assessment Tool, Baseline, May 20171 senseview framework →
§1
The combination of the probability and severity of impact that results from a threat successfully breaking through a vulnerability in security and attacking the organization's information.
NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
NIST SP 800-301 senseview framework →
§1
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
Legacy lexicon import1 senseview framework →
§1 · legacy_primary
The risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.
DR-088 backfill from the noun definition column

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.