Intent & Capability
Threat can be evaluated as a combination of Intent & Capability.
Intent and Capability both comprise other elements as illustrated below.
Assessing Threat
Threats can be assessed in many ways. However, one approach is to develop an ordinal ranking of Threat Actors’ resources, knowledge, desires, and confidence (a.k.a.Expectance) to develop an overall threat profile.
Resources
What resources (or access to resources)does the attacker have at their disposal?
Few if any resources and/or funding
Limited funding and/or resources
Moderate level of financing and/or resources
Significant level of funding and/or resources.
Fully funded and resourced.
Knowledge
How much knowledge or skills does the attacker have?
No knowledge or training
Limited knowledge and ability.
Moderate level of training and skills.
Very skilled and trained in the use of tactics and techniques
Highly skilled and comprehensively trained.
Desire
What does the attacker desire?
Little to no desire-absence of drive and purpose
Some drive and commitment to achieve outcomes using generally peaceful means.
Highly motivated but with some flexibility in terms of method and capacity for compromise.
High degree of desire with limited room for compromise and potential to use extreme measures.
Extremist motivations with few if any limitations on attack options and no room for compromise.
Confidence (Expectance)
An attacker’s confidence or expectation, can be ranked as follows:
Threat actor does not believe they have the capacity & competence to achieve an attack.
Threat actor believes they have limited capacity & competence to achieve an attack.
Threat actor has reasonable expectation of a successful attack based on their capacity & competence.
Threat actor competence and capabilities are such that they have high expectations of achieving a successful attack.
Threat actor has very high expectation of achieving a successful attack.
An example of the summary of a threat assessment is presented in the following graphic. This is NOT a Threat Assessment, merely the summary of potentially many pages of material and hours or months of research and analysis.