University (WGU) – Study Guide Q&A for Tasks
1, 2 & 3
Introduction
This study guide contains question-and-answer material
covering WGU C845 VUN1 Tasks 1, 2, and 3. It reviews key
concepts including risk assessment, security policy
development, business continuity planning, risk mitigation,
stakeholder involvement, compliance, disaster recovery, and
organizational resilience. The content is organized as concise
Q&As, making it suitable for exam preparation and quick
revision. It also includes integrated questions demonstrating
how the three tasks relate to one another.
Studynotes Questions and Answers
1: What is the primary objective of Task 1 in WGU C845
VUN1?--- correct precise answer ---
The primary objective of Task 1 is to conduct a risk
assessment for a given scenario, identifying potential risks
and proposing mitigation strategies.
2: What tools or frameworks are recommended for conducting
the risk assessment in Task 1?--- correct precise answer ---
,Recommended tools and frameworks include NIST SP 800-30,
ISO 31000, and qualitative or quantitative risk assessment
methodologies.
3: In Task 1, what is the significance of identifying assets in
the risk assessment process?--- correct precise answer ---
Identifying assets is crucial as it helps determine what needs
protection, assess the impact of potential threats, and
prioritize risk mitigation efforts.
4: How should threats be categorized in Task 1?--- correct
precise answer ---
Threats should be categorized based on their nature, such as
natural,
human-caused, or technological, to better understand their
potential impact and likelihood.
5: What is the role of vulnerability assessment in Task 1?---
correct precise answer ---
The vulnerability assessment identifies weaknesses in the
system that could be exploited by threats, helping prioritize
areas for improvement and risk reduction.
6: How can risk likelihood be assessed in Task 1?--- correct
precise answer ---
Risk likelihood can be assessed using historical data, expert
judgment, and probability analysis to estimate the chances of
a threat exploiting a vulnerability.
, 7: What is the purpose of proposing mitigation strategies in
Task 1?--- correct precise answer ---
Proposing mitigation strategies aims to reduce the impact or
likelihood of identified risks, ensuring the protection of assets
and continuity of operations.
8: Describe a common challenge faced during Task 1.
A common challenge is accurately assessing risk likelihood
and impact due to limited data or rapidly changing threat
landscapes.
9: In Task 2, what is the focus of the security policy
development?--- correct precise answer ---
The focus is on creating comprehensive security policies that
align with organizational goals and regulatory requirements,
ensuring effective risk management.
10: Why is stakeholder involvement important in Task 2?---
correct precise answer ---
Stakeholder involvement ensures that policies are practical,
address real-world concerns, and have the necessary support
for successful implementation.
11: What are some key components of a security policy in Task
2?--- correct precise answer ---