Insights
Describe the role of attributes performance thresholds in removing
subjectivity of risk assessments Correct Answer - - Primary KRI sets
acceptable/unacceptable risk appetite ranges
- Secondary KRIs are used to trigger a warning system that things are going
awry
List the 6 views of SABSA Architecture Correct Answer - Business View -
Contextual Arch - goals
Architects View - Conceptual Arch - framework
Designers View - Logical Arch - process/flow
Builders View - Physical Arch - rules/procedures
Tradesman's View - Component Arch - components/people
Managers View - Management Arch - management
Name the 6 layers of the SABSA Architecture Matrix Correct Answer - What
- The assets, goals and objectives to be protected and enhanced
Why - The risk and opportunity motivation
How - The processes required to achieve security
Who - The people and organizational aspects of security
Where - The locations where we are applying security
When - The time related aspects
Label the 6 columns of the SABSA Matrices Correct Answer - Assets (What)
Motivation (Why)
Process (How)
People (Who)
Location (Where)
Time (When)
List the 6 rows of the SABSA architecture Matrix Correct Answer -
Contextual
Conceptual
Logical
Physical
Component
, Management (this one encapsulates all)
What within the Inspectors View provides assurance of architecuture?
Correct Answer - - complete
- robust
- fit for purpose
- consistent
Define the traceability flow from business requirements to Attributes
Correct Answer - - small credible steps, not big jumps
- business requirements are traced to attributes by using an abstraction of the
real business requirement and vice versa
Define SABSA Attributes Correct Answer - Attributes are a conceptual
abstraction of real business requirements
Describe the rules & features of Attributes Correct Answer - - Tangible or
intangible
- Meaningful name and definition, uniq. to org
- Requires a measurement approach and metric
- Validated by business stakeholders - Performance targets are used for
reporting and SLA
- Link between biz reqs and technology and process design
- picklist
Define Attributes Taxonomy and Profile Correct Answer - Taxonomy
- Name
- Definition
- Classification
Attribute Profile
- Measurement approach
- Metric
- Performance target
Identify elements of Attributes requiring customisation Correct Answer -
Customized per local and business needs
- Name
- Definition