Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 2 fuera de 7 páginas
Examen

CYBER SECURITY AND INFORMATION ASSURANCE EXAM QUESTIONS AND ANSWERS 100% CORRECT!!

Document preview thumbnail
Vista previa 2 fuera de 7 páginas

Risk Assessment - ANSWER means "the process of identifying, estimating, and prioritizing information security risks." What does risk assessment include? - ANSWER *Identify threats *Estimate the likelihood of being targeted *Identify vulnerabilities *Estimate the impact/harm should a threat successfully exploit a vulnerability *Estimate the likelihood that the harm will occur *Estimate risk as a function of the degree of harm and the likelihood that it will occur Responding/Treating Risk - ANSWER Avoid Mitigate Transfer Accept Avoid (Risk) - ANSWER Discontinue risky practice (decommission insecure system or prohibit insecure conduct) Mitigate(Risk) - ANSWER Apply measures to reduce the level of risk (encryption, AV, access control) Transfer(Risk) - ANSWER Shift the impact to some other entity(cyber-insurance, contractual means such as indemnification clauses) Accept(Risk) - ANSWER Process by which managers agree to accept the risk (e.g., managers understand risk and the possible options for treating it, but decide to accept it) Controls - ANSWER Measures that we put in place to mitigate risk Administrative Control - ANSWER management of policy oriented Technical Control - ANSWER Software or hardware oriented Corrective - ANSWER fix information or systems after an incident Recovery - ANSWER restore necessary components to normal operation Monitoring Risk - ANSWER * seeing if chosen risk responses are actually implemented * determining if they are effective * tracking changes in risk environment that need t

Vista previa del contenido

CYBER SECURITY AND INFORMATION ASSURANCE
EXAM QUESTIONS AND ANSWERS 100% CORRECT!!

, Risk - ANSWER is the likelihood that a threat agent will exploit a vulnerability and the
associated impact

Managing Risk - ANSWER means identifying, assessing, prioritizing, and treating
(responding to) risk; monitoring the evolving situation, and continuing the process

Risk Assessment - ANSWER means "the process of identifying, estimating, and
prioritizing information security risks."

What does risk assessment include? - ANSWER *Identify threats
*Estimate the likelihood of being targeted
*Identify vulnerabilities
*Estimate the impact/harm should a threat successfully exploit a vulnerability
*Estimate the likelihood that the harm will occur
*Estimate risk as a function of the degree of harm and the likelihood that it will occur

Responding/Treating Risk - ANSWER Avoid
Mitigate
Transfer
Accept

Avoid (Risk) - ANSWER Discontinue risky practice
(decommission insecure system or prohibit insecure conduct)

Mitigate(Risk) - ANSWER Apply measures to reduce the level of risk (encryption, AV,
access control)

Transfer(Risk) - ANSWER Shift the impact to some other entity(cyber-insurance,
contractual means such as indemnification clauses)

Accept(Risk) - ANSWER Process by which managers agree to accept the risk (e.g.,
managers understand risk and the possible options for treating it, but decide to accept
it)

Controls - ANSWER Measures that we put in place to mitigate risk

Administrative Control - ANSWER management of policy oriented

Technical Control - ANSWER Software or hardware oriented

Información del documento

Subido en
28 de enero de 2026
Número de páginas
7
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas
$13.49

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
Luckyexams
3.2
(6)
Vendido
30
Seguidores
2
Artículos
2288
Última venta
6 días hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes