Answer :
Answer:
Risk appetite, Risk tolerance
Explanation:
An organisation's security strategy is normally defined in terms of risk appetite, which usually refers to how much risk an organization is ready to accept in order to achieve its target as well as how much risk tolerance an organisation can accept in the process.
Risk tolerance is the amount of risk which a company can tolerate on its risk, while risk appetite is the overall risk that a company can bear on a specified risk profile, generally expressed as a whole.