nerdexam
CompTIA

CAS-002 · Question #370

Risk assessment helps in determining the extent of potential threats and risks associated with an IT system throughout its SDLC. Which of the following steps covered by the risk assessment…

The correct answer is A. Vulnerability Identification C. Threat Identification D. System Characterization. Risk assessment is the first process of risk management. It helps in determining the extent of potential threats and risks associated with an IT system throughout its SDLC. The risk assessment methodology covers nine steps which are as follows: - Step 1-System Characterization…

Enterprise Security

Question

Risk assessment helps in determining the extent of potential threats and risks associated with an IT system throughout its SDLC. Which of the following steps covered by the risk assessment methodology? Each correct answer represents a complete solution. Choose three.

Options

  • AVulnerability Identification
  • BCost Analysis
  • CThreat Identification
  • DSystem Characterization

How the community answered

(33 responses)
  • A
    91% (30)
  • B
    9% (3)

Explanation

Risk assessment is the first process of risk management. It helps in determining the extent of potential threats and risks associated with an IT system throughout its SDLC. The risk assessment methodology covers nine steps which are as follows: - Step 1-System Characterization - Step 2-Threat Identification - Step 3-Vulnerability Identification - Step 4-Control Analysis - Step 5-Likelihood Determination - Step 6-Impact Analysis - Step 7-Risk Determination - Step 8-Control Recommendations - Step 9-Results Documentation

Topics

#risk assessment#threat identification#vulnerability identification#SDLC

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice