The quest for weak links in information security
CSO
November 12, 2013 — CSO — A widely accepted definition of information security risk is the potential of a specific threat exploiting the vulnerabilities of an information asset, with the following formula used to represent information security risks

and more »