Vulnerabilities

Understand some of the most common vulnerabilities and how they affect different asset classes differently.

Vulnerabilities affect assets. A common list of types of vulnerabilities is “destruction, disclosure, removal, and interruption.” At this level of abstraction, disclosure makes little sense—these are physical assets. Information assets (including things such as plans for physical assets like buildings or surveillance systems) can be disclosed inappropriately; physical assets themselves cannot.

The primary vulnerabilities of the classes identified here are

  • Facility

    Destruction:

    • Accidental (fire, flood, earthquake, wind, snow, construction faults)

    • Deliberate (vandalism, sabotage, arson, terrorism)

  • Support

    Destruction:

    • Accidental ...

Get CISSP Training Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.