nerdexam
(ISC)2(ISC)2

CCSP · Question #510

CCSP Question #510: Real Exam Question with Answer & Explanation

The correct answer is A: Reproducibility. The DREAD threat risk rating model is an acronym where each letter represents a scoring dimension: D = Damage potential, R = Reproducibility, E = Exploitability, A = Affected users, D = Discoverability. Reproducibility measures how easily an attacker can repeat the exploit - a sc

Submitted by neha2k· Apr 18, 2026Legal, Risk and Compliance

Question

What concept does the "R" represent with the DREAD model?

Options

  • AReproducibility
  • BRepudiation
  • CRisk
  • DResidual

Explanation

The DREAD threat risk rating model is an acronym where each letter represents a scoring dimension: D = Damage potential, R = Reproducibility, E = Exploitability, A = Affected users, D = Discoverability. Reproducibility measures how easily an attacker can repeat the exploit - a score of 'always reproducible' means higher risk. Repudiation, Risk, and Residual are not part of the DREAD acronym.

Topics

#DREAD model#Threat Modeling#Risk Assessment#Reproducibility

Community Discussion

No community discussion yet for this question.

Full CCSP PracticeBrowse All CCSP Questions