Matching Pairs Layers of SecurityOnline version Match the definition with the correct term. by Quintasia Hurt 1 confidentiality 2 risk assessment 3 attack surface 4 Integrity 5 Access control 6 CIA 7 risk management 8 social engineering 9 Defense in depth 10 Availability 11 risk mitigation confidentiality, integrity, availability The process of restricting access to a resource to only permitted users, applications, or computer systems. The exposure, the reachable and exploitable vulnerabilities that a system or technology has. The characteristic of a resource ensuring access is restricted to only permitted users, applications, or computer systems. The consistency, accuracy, and validity of data or information. One of the goals of a successful information security program is to ensure that data is protected against any unauthorized or accidental changes. Identifies the risks that might impact your particular environment. Describes a resource being accessible to a user, application, or computer system when required. Taking steps to reduce the likelihood or impact of a risk. A method used to gain access to data, systems, or networks, primarily through misrepresentation. This technique typically relies on the trusting nature of the person being attacked. The process of identifying, assessing, and prioritizing threats and risks.