A vulnerability assessment is the process of defining, identifying, classifying and prioritizing vulnerabilities in computer systems, applications and network infrastructures.

Computer security, also known as cybersecurity or IT security, refers to the security of computing devices such as computers and smartphones, as well as computer networks such as private and public networks, and the Internet. The field has growing importance due to the increasing reliance on computer systems in most societies. It concerns the protection of hardware, software, data, people, and

security state of a computer system or network, and (ii) How to define and use metrics to measure CSA from a defender's point of view. This section will briefly review state-of-the-art security metrics and discuss the challenges to define and apply good metrics for comprehensive CSA