Topic 1 : Pool A
Which of the following will BEST quantify the risk associated with malicious users in an organization?
A.
Business impact analysis
B.
Risk analysis
C.
Threat risk assessment
D.
Vulnerability assessment
Business impact analysis
Which of the following approaches will BEST help to ensure the effectiveness of risk awareness training?
A.
Piloting courses with focus groups
B.
Using reputable third-party training programs
C.
Reviewing content with senior management
D.
Creating modules for targeted audiences
Creating modules for targeted audiences
Which of the following is the MOST cost-effective way to test a business continuity plan?
A.
Conduct interviews with key stakeholders.
B.
Conduct a tabletop exercise.
C.
Conduct a disaster recovery exercise.
D.
Conduct a full functional exercise
Conduct a tabletop exercise.
The MOST important characteristic of an organization s policies is to reflect the organization's:
A.
risk assessment methodology.
B.
risk appetite.
C.
capabilities
D.
asset value.
risk appetite.
The BEST criteria when selecting a risk response is the:
A.
capability to implement the response
B.
importance of IT risk within the enterprise
C.
effectiveness of risk response options
D.
alignment of response to industry standards
effectiveness of risk response options
Page 29 out of 193 Pages |
Previous |