NEW
Font size
WorksheetsIAS 1 - RM
Total questions: 10
Worksheet time: 3mins
It is the preferred risk control strategy.
Defend
Mitigate
Transfer
Accept
It is the most common of the mitigation procedures.
IRP
DRP
BCP
This strategy is based on the conclusion that the cost of protecting an asset does not justify the security expenditure
Transfer
Terminate
Accept
Avoid
Access to information with this classification is strictly on a need-to-know basis or as required by the terms of a contract.
Confidential
Internal
External
It is the determination of the extent to which the organization’s information assets are exposed or at risk.
Risk Management
Risk Identification
Risk Assessment
Risk Control
It is the most strategic and long term among the three mitigation procedures.
Disaster Recovery Plan
Incident Response Plan
Business Continuity Plan
Which of the following is NOT an example of Commercial Data Classification and Management?
Sensitive
Confidential
Secret
Proprietary
The process of identifying risk, (as represented by vulnerabilities), to an organization’s information assets and infrastructure, and taking steps to reduce this risk to an acceptable level.
Risk Management
Risk Assessment
Risk Identification
Risk Control
If a control is in place, the asset is protected.
True
False
It is not possible to eliminate a threat.
True
False
