(ISC)2 Certified in Cybersecurity -
Exam Prep comprehensive Questions
and Answers with Verified Solutions
Question 1:
Document specific requirements that a customer has about any aspect of
a vendor's service performance. A) DLR B) Contract C) SLR D) NDA
Answer:
C) SLR (Service-Level Requirements)
Question 2:
_________ identifies and triages risks.
Answer:
Risk Assessment
Question 3:
_________ are external forces that jeopardize security.
Answer:
Threats
Question 4:
_________ are methods used by attackers.
Answer:
Threat Vectors
,Question 5:
_________ are the combination of a threat and a vulnerability.
Answer:
Risks
Question 6:
We rank risks by _________ and _________.
Answer:
Likelihood and impact
Question 7:
_________ use subjective ratings to evaluate risk likelihood and impact.
Answer:
Qualitative Risk Assessment
Question 8:
_________ use objective numeric ratings to evaluate risk likelihood and
impact.
Answer:
Quantitative Risk Assessment
Question 9:
_________ changes business practices to make a risk irrelevant.
Answer:
Risk Avoidance
, Question 10:
_________ reduces the likelihood or impact of a risk.
Answer:
Risk Mitigation
Question 11:
An organization's _________ is the set of risks that it faces.
Answer:
Risk Profile
Question 12:
_________ Initial Risk of an organization.
Answer:
Inherent Risk
Question 13:
_________ Risk that remains in an organization after controls.
Answer:
Residual Risk
Question 14:
_________ is the level of risk an organization is willing to accept.
Answer:
Risk Tolerance
Exam Prep comprehensive Questions
and Answers with Verified Solutions
Question 1:
Document specific requirements that a customer has about any aspect of
a vendor's service performance. A) DLR B) Contract C) SLR D) NDA
Answer:
C) SLR (Service-Level Requirements)
Question 2:
_________ identifies and triages risks.
Answer:
Risk Assessment
Question 3:
_________ are external forces that jeopardize security.
Answer:
Threats
Question 4:
_________ are methods used by attackers.
Answer:
Threat Vectors
,Question 5:
_________ are the combination of a threat and a vulnerability.
Answer:
Risks
Question 6:
We rank risks by _________ and _________.
Answer:
Likelihood and impact
Question 7:
_________ use subjective ratings to evaluate risk likelihood and impact.
Answer:
Qualitative Risk Assessment
Question 8:
_________ use objective numeric ratings to evaluate risk likelihood and
impact.
Answer:
Quantitative Risk Assessment
Question 9:
_________ changes business practices to make a risk irrelevant.
Answer:
Risk Avoidance
, Question 10:
_________ reduces the likelihood or impact of a risk.
Answer:
Risk Mitigation
Question 11:
An organization's _________ is the set of risks that it faces.
Answer:
Risk Profile
Question 12:
_________ Initial Risk of an organization.
Answer:
Inherent Risk
Question 13:
_________ Risk that remains in an organization after controls.
Answer:
Residual Risk
Question 14:
_________ is the level of risk an organization is willing to accept.
Answer:
Risk Tolerance