Threat is ...


... "any circumstance or event with the potential to adversely impact organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, or the Nation through
an information system via unauthorized access, destruction, disclosure, modification of information, and/or denial of service" 
[source: NIST SP800-30r1]

... "a person, situation or event (whether deliberate or accidental, targeted
or generic in nature) that is hazardous or dangerous, capable of causing
an information security incident" [source: SecAware glossary]

... "potential cause of an unwanted incident, which can result in
harm to a system or organization" [source: ISO/IEC 27000:2018]

... a competitor's unexpected shift of tactics

... an ominous promise to cause harm

... an accident waiting to happen

... the cause of a really bad day

... nature red in tooth and claw

... storm clouds on the horizon

... an active component of risk

... an unfortunate coincidence

... sometimes hard to detect

... intended to provoke fear

... advanced and persistent

... go ahead, make my day

... mitigated by deterrents

... a laser dot on the torso

... a stated intent to harm

... the catalyst for change

... a burst of testosterone

... external to the system

... all mouth and trousers

... retarded and tentative

... not always recognised

... what might go wrong

... part of the landscape

... dark and foreboding

... obvious in hindsight

... economic downturn

... when luck runs out

... bad consequences

... competitive intent

... a ransom demand

... coming tooled-up

... potential to harm

... marauding gangs

... an implied attack

... easily discounted

... over-emphasised

... impending doom

... adverse weather

... lack of oversight

... a nasty promise

... a nasty surprise

... static discharge

... unpredictability

... a show of force

... not when but if

... not if but when

... something bad

... hard to control

... a warning sign

... Freddy Kruger

... worth ducking

... the unknown

... a probability

... best avoided

... an oversight

... a possibility

... a prediction

... provocative

... a likelihood

... xenophobia

... generalised

... unintended

... a certainty

... intentional

... theoretical

... the enemy

... hazardous

... bad actors

... existential

... accidental

... a warning

... deliberate

... menacing

... or else ...

... uncertain

... fearsome

... outsiders

... expected

... criminals

... technical

... for show

... ominous

... coercion

... volatility

... left-field

... demonic

... violence

... physical

... directed

... mythical

... genuine

... looming

... bravado

... a worry

... a pitfall

... insiders

... disease

... a bomb

... obvious

... a scowl

... a tactic

... assault

... human

... spooky

... feared

... failure

... 'them'

... anger

... death

... social

... scary

... fake

...

Browse these bloggings too:

... and comment below ... or there'll be trouble ...

Popular posts from this blog

Pragmatic ISMS implementation guide (FREE!)

Two dozen information risks that ISO forgot

Philosophical phriday - compliance risk

ISMS internal audit priorities

Reading between the lines of ISO27001 [L O N G]

Passionate dispassion

45 ISO Management Systems Standards

Philosophical phriday - a noncompliance ramble

Adaptive SME security Crowdstrike special