nerdexam
(ISC)2

CCSP · Question #734

Upon completing a risk analysis, a company has four different approaches to addressing risk. Which approach it takes will be based on costs, available options, and adherence to any regulatory…

The correct answer is A. Accept, avoid, transfer, mitigate. The four possible approaches to risk are as follows: accept (do not patch and continue with the risk), avoid (implement solutions to prevent the risk from occurring), transfer (take out insurance), and mitigate (change configurations or patch to resolve the risk). Each of these…

Submitted by chiamaka_o· Apr 18, 2026Legal, Risk and Compliance

Question

Upon completing a risk analysis, a company has four different approaches to addressing risk. Which approach it takes will be based on costs, available options, and adherence to any regulatory requirements from independent audits. Which of the following groupings correctly represents the four possible approaches?

Options

  • AAccept, avoid, transfer, mitigate
  • BAccept, deny, transfer, mitigate
  • CAccept, deny, mitigate, revise
  • DAccept, dismiss, transfer, mitigate

How the community answered

(32 responses)
  • A
    91% (29)
  • B
    3% (1)
  • C
    3% (1)
  • D
    3% (1)

Explanation

The four possible approaches to risk are as follows: accept (do not patch and continue with the risk), avoid (implement solutions to prevent the risk from occurring), transfer (take out insurance), and mitigate (change configurations or patch to resolve the risk). Each of these answers contains at least one incorrect approach name.

Topics

#Risk management#Risk response strategies#Risk treatment#Accept, Avoid, Transfer, Mitigate

Community Discussion

No community discussion yet for this question.

Full CCSP Practice