Risk Mitigation

Noun · Security & Infosec

Definitions

  1. The reduction of risk through controls, process changes, redesign, monitoring, or other actions that lower likelihood or impact. Mitigation does not always remove the issue completely, but it should meaningfully improve the situation compared with leaving the risk untouched.

    In plain English: Taking steps to reduce a risk.

    Example: "Until a full replacement was possible, isolating the device behind a one-way gateway served as the main risk mitigation."

Related Terms