MLchartDataset catalogue

vulnerability analysis

Term · Cybersecurity · MLC-T-CYB-004588

1. Systematic examination of a system or product or supply chain element to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation.

2. Product or process of identifying attributes that render an entity, asset, system, network, or geographic area susceptible or exposed to threats.

3. Formal description and evaluation of the vulnerabilities in an information system.

4. Systematic examination of an information system or product to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation.

5. See vulnerability assessment.

6. Systematic examination of an information system or product to determine the adequacy of security and privacy measures, identify security and privacy deficiencies, provide data from which to predict the effectiveness of proposed security and privacy measures, and confirm the adequacy of such measures after implementation.

Table 1. Record
IdentifierMLC-T-CYB-004588
FieldCybersecurity
Synonymsvulnerability assessment
ReferencesNIST SP 800-161r1-upd1 [11/1/2024 errata update] from NIST SP 800-53 Rev. 5 (adapted); CNSSI 4009-2022 from DHS Lexicon Terms and Definitions (adapted); NIST SP 800-137 from CNSSI 4009; NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded] from CNSSI 4009; CNSSI 4009-2015; NIST SP 800-37 Rev. 2 from CNSSI 4009-2015; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; CNSSI 4009-2022; NIST SP 800-161 [Superseded] from NIST SP 800-53A Rev. 4, CNSSI 4009; NIST SP 800-30 Rev. 1 from CNSSI 4009; NIST SP 800-39 from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NISTIR 7622 from CNSSI 4009, NIST SP 800-53A; NIST SP 800-160 Vol. 1 from CNSSI 4009; NIST SP 800-53A Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; CNSSI 4009-2015 from NISTIR 7298 Rev. 2; NIST SP 800-53 Rev. 5; NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 800-53A Rev. 5; NIST SP 800-53A Rev. 4 [Superseded] from CNSSI 4009 (Adapted); NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-004588",
  "term": "vulnerability analysis",
  "field": "Cybersecurity",
  "definition": "1. Systematic examination of a system or product or supply chain element to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation.\n\n2. Product or process of identifying attributes that render an entity, asset, system, network, or geographic area susceptible or exposed to threats.\n\n3. Formal description and evaluation of the vulnerabilities in an information system.\n\n4. Systematic examination of an information system or product to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation.\n\n5. See vulnerability assessment.\n\n6. Systematic examination of an information system or product to determine the adequacy of security and privacy measures, identify security and privacy deficiencies, provide data from which to predict the effectiveness of proposed security and privacy measures, and confirm the adequacy of such measures after implementation.",
  "synonyms": [
    "vulnerability assessment"
  ],
  "references": [
    "NIST SP 800-161r1-upd1 [11/1/2024 errata update] from NIST SP 800-53 Rev. 5 (adapted)",
    "CNSSI 4009-2022 from DHS Lexicon Terms and Definitions (adapted)",
    "NIST SP 800-137 from CNSSI 4009; NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded] from CNSSI 4009",
    "CNSSI 4009-2015; NIST SP 800-37 Rev. 2 from CNSSI 4009-2015; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; CNSSI 4009-2022; NIST SP 800-161 [Superseded] from NIST SP 800-53A Rev. 4, CNSSI 4009; NIST SP 800-30 Rev. 1 from CNSSI 4009; NIST SP 800-39 from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NISTIR 7622 from CNSSI 4009, NIST SP 800-53A; NIST SP 800-160 Vol. 1 from CNSSI 4009; NIST SP 800-53A Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022",
    "CNSSI 4009-2015 from NISTIR 7298 Rev. 2; NIST SP 800-53 Rev. 5; NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 800-53A Rev. 5",
    "NIST SP 800-53A Rev. 4 [Superseded] from CNSSI 4009 (Adapted)",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/vulnerability-analysis/"
}

Record 4,588 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.