Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 7 pages
Exam (elaborations)

CYBER SECURITY AND INFORMATION ASSURANCE EXAM QUESTIONS AND ANSWERS 100% CORRECT!!

Document preview thumbnail
Preview 2 out of 7 pages

Risk Assessment - ANSWER means "the process of identifying, estimating, and prioritizing information security risks." What does risk assessment include? - ANSWER *Identify threats *Estimate the likelihood of being targeted *Identify vulnerabilities *Estimate the impact/harm should a threat successfully exploit a vulnerability *Estimate the likelihood that the harm will occur *Estimate risk as a function of the degree of harm and the likelihood that it will occur Responding/Treating Risk - ANSWER Avoid Mitigate Transfer Accept Avoid (Risk) - ANSWER Discontinue risky practice (decommission insecure system or prohibit insecure conduct) Mitigate(Risk) - ANSWER Apply measures to reduce the level of risk (encryption, AV, access control) Transfer(Risk) - ANSWER Shift the impact to some other entity(cyber-insurance, contractual means such as indemnification clauses) Accept(Risk) - ANSWER Process by which managers agree to accept the risk (e.g., managers understand risk and the possible options for treating it, but decide to accept it) Controls - ANSWER Measures that we put in place to mitigate risk Administrative Control - ANSWER management of policy oriented Technical Control - ANSWER Software or hardware oriented Corrective - ANSWER fix information or systems after an incident Recovery - ANSWER restore necessary components to normal operation Monitoring Risk - ANSWER * seeing if chosen risk responses are actually implemented * determining if they are effective * tracking changes in risk environment that need t

Content preview

CYBER SECURITY AND INFORMATION ASSURANCE
EXAM QUESTIONS AND ANSWERS 100% CORRECT!!

, Risk - ANSWER is the likelihood that a threat agent will exploit a vulnerability and the
associated impact

Managing Risk - ANSWER means identifying, assessing, prioritizing, and treating
(responding to) risk; monitoring the evolving situation, and continuing the process

Risk Assessment - ANSWER means "the process of identifying, estimating, and
prioritizing information security risks."

What does risk assessment include? - ANSWER *Identify threats
*Estimate the likelihood of being targeted
*Identify vulnerabilities
*Estimate the impact/harm should a threat successfully exploit a vulnerability
*Estimate the likelihood that the harm will occur
*Estimate risk as a function of the degree of harm and the likelihood that it will occur

Responding/Treating Risk - ANSWER Avoid
Mitigate
Transfer
Accept

Avoid (Risk) - ANSWER Discontinue risky practice
(decommission insecure system or prohibit insecure conduct)

Mitigate(Risk) - ANSWER Apply measures to reduce the level of risk (encryption, AV,
access control)

Transfer(Risk) - ANSWER Shift the impact to some other entity(cyber-insurance,
contractual means such as indemnification clauses)

Accept(Risk) - ANSWER Process by which managers agree to accept the risk (e.g.,
managers understand risk and the possible options for treating it, but decide to accept
it)

Controls - ANSWER Measures that we put in place to mitigate risk

Administrative Control - ANSWER management of policy oriented

Technical Control - ANSWER Software or hardware oriented

Document information

Uploaded on
January 28, 2026
Number of pages
7
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$13.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Luckyexams
3.2
(6)
Sold
30
Followers
2
Items
2288
Last sold
6 days ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions