What determines the nature and degree of system vulnerabilities and can take a variety of forms based on factors such as the balance of technological and non-technological concerns?
1) Risk assessment
2) Threat modeling
3) Vulnerability scanning
4) Penetration testing