The terms risk, threat and vulnerability are core elements in risk analysis, each representing a distinct concept:
An effective cybersecurity program maps threats to vulnerabilities, evaluates the risk they present and implements controls to reduce either likelihood or impact. ComplianceForge's Risk-Threat-Vulnerability ecosystem guides emphasize this linkage and the importance of controls to lower overall risk.