Skip to main content
NETWORK-SECURITY5 MIN READ

Score Exposed RDP as a Risk Scenario

Use risk assessment steps to analyze and communicate an exposed remote access finding.

A contractor jump box exposes RDP to the internet, uses MFA at login, has weak logs, and can reach a staging database. NIST SP 800-30 risk assessment: threat event -> vulnerability or condition -> likelihood -> impact -> residual risk decision. Calling the finding critical without naming the scenario invites argument; calling it acceptable because MFA exists ignores exposure, logging, and pivot paths. Threat event Define the event as internet-based attackers attempting remote access to the contractor jump box. This focuses the analysis on a plausible event, not on the protocol name alone. Likelihood Increase likelihood because the service is…

Read the full lesson

Sign up free — one personalized lesson every day, matched to your role and goals.

Already have an account? Sign in

← Back to library
Contact us