Attack Surface Reduction – Chapter 4 - InfoSec Institute: "The foundation of acceptable risk is a minimized, monitored, and managed attack surface (AS). The process of achieving this state is attack surface reduction (ASR). ASR closes all but required doors leading to system assets and constrains others with access rights, monitoring, and response."
'via Blog this'