Score Exposed RDP as a Risk Scenario
Use risk assessment steps to analyze and communicate an exposed remote access finding.
A contractor jump box exposes RDP to the internet, uses MFA at login, has weak logs, and can reach a staging database. NIST SP 800-30 risk assessment: threat event -> vulnerability or condition -> likelihood -> impact -> residual risk decision. Calling the finding critical without naming the scenario invites argument; calling it acceptable because MFA exists ignores exposure, logging, and pivot paths. Threat event Define the event as internet-based attackers attempting remote access to the contractor jump box. This focuses the analysis on a plausible event, not on the protocol name alone. Likelihood Increase likelihood because the service is…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in