nerdexam
Exams312-50V9Questions#454
EC-Council

312-50V9 · Question #454

312-50V9 Question #454: Real Exam Question with Answer & Explanation

The correct answer is B: Administrative safeguards. Risk assessments evaluate existing safeguards and controls, including administrative safeguards, making it the component that belongs in a risk assessment.

Question

Which of the following is a component of a risk assessment?

Options

  • APhysical security
  • BAdministrative safeguards
  • CDMZ
  • DLogical interface

Explanation

Risk assessments evaluate existing safeguards and controls, including administrative safeguards, making it the component that belongs in a risk assessment.

Common mistakes.

  • A. Physical security is a category of security control, not a component of a risk assessment methodology.
  • C. A DMZ is a network architecture element and technical control, not a component of the risk assessment process itself.
  • D. A logical interface is a networking or system concept, not a defined component within a risk assessment framework.

Concept tested. Risk assessment components and administrative safeguards

Reference. https://csrc.nist.gov/publications/detail/sp/800-30/rev-1/final

Community Discussion

No community discussion yet for this question.

Full 312-50V9 Practice