Matching Pairs Layers of SecurityOnline version Match the definition with the correct term. by Quintasia Hurt 1 attack surface 2 Defense in depth 3 social engineering 4 Integrity 5 Access control 6 risk mitigation 7 risk management 8 risk assessment 9 confidentiality 10 Availability 11 CIA The exposure, the reachable and exploitable vulnerabilities that a system or technology has. Identifies the risks that might impact your particular environment. A method used to gain access to data, systems, or networks, primarily through misrepresentation. This technique typically relies on the trusting nature of the person being attacked. The process of restricting access to a resource to only permitted users, applications, or computer systems. Describes a resource being accessible to a user, application, or computer system when required. confidentiality, integrity, availability The process of identifying, assessing, and prioritizing threats and risks. The characteristic of a resource ensuring access is restricted to only permitted users, applications, or computer systems. The consistency, accuracy, and validity of data or information. One of the goals of a successful information security program is to ensure that data is protected against any unauthorized or accidental changes. Taking steps to reduce the likelihood or impact of a risk.