Vulnerability is a term used to describe the weakness or lack (of assets) in risk management. Vulnerability allows the application of threat. In risk analysis, the vulnerability is a property of assets.
Vulnerability is characterizes mainly by two factors:
- Sensitivity (susceptibility to causing a risk by threat)
- Criticality (importance of the asset for an organization, an individual or a system)
Use of vulnerability in practice: Vulnerability together with threat is used to assess the risk. At a comparable level of threat, lower level of vulnerability results to lower level of risk and vice versa.