Risk is a broad topic. When we discuss risk in the context of#cybersecurity, we’re usually referring to risk management. Specifically: cybersecurity risk.

NIST defines cybersecurity risk as any risk in the domain of information or technology relating to the loss of any of the following:

  1. Loss of confidentiality
  2. Loss of integrity
  3. Loss of availability

Where the loss of one or more of these properties1 of information, data, or systems would result in negative impact to a person or entity’s ability to operate.

Footnotes

  1. This is colloquially referred to as the CIA triad in cybersecurity circles.