Matching Pairs Layers of SecurityOnline version Match the definition with the correct term. by Quintasia Hurt 1 CIA 2 Defense in depth 3 confidentiality 4 Access control 5 Integrity 6 risk management 7 risk assessment 8 attack surface 9 Availability 10 social engineering 11 risk mitigation The process of identifying, assessing, and prioritizing threats and risks. The characteristic of a resource ensuring access is restricted to only permitted users, applications, or computer systems. Taking steps to reduce the likelihood or impact of a risk. Describes a resource being accessible to a user, application, or computer system when required. A method used to gain access to data, systems, or networks, primarily through misrepresentation. This technique typically relies on the trusting nature of the person being attacked. The process of restricting access to a resource to only permitted users, applications, or computer systems. Identifies the risks that might impact your particular environment. The consistency, accuracy, and validity of data or information. One of the goals of a successful information security program is to ensure that data is protected against any unauthorized or accidental changes. The exposure, the reachable and exploitable vulnerabilities that a system or technology has. confidentiality, integrity, availability