CompTIA Security+ > Quantitative Risk Analysis > Flashcards
What is Quantitative Risk Analysis?
Method that evaluates risks using numerical measurements
What are the key components for Quantitative Risk Analysis?
● Single Loss Expectancy (SLE)
● Exposure Factor (EF)
● Annualized Rate of Occurrence (ARO)
● Annualized Loss Expectancy (ALE)
What is the Exposure Factor (EF)?
Amount of assets lost in an event
What is the Single Loss Expectancy (SLE)?
Monetary value expected to be lost in a single event.
Calculated as: (Asset Value x Exposure Factor)
What is the Annualized Rate of Occurrence (ARO)?
Estimated frequency of threat occurrence within a year
What is the Annualized Loss Expectancy (ALE)?
Expected annual loss from a risk.
Calculated as: (SLE x ARO)