nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #467

CERTIFIED-IN-CYBERSECURITY Question #467: Real Exam Question with Answer & Explanation

The correct answer is C: Identify risks. The first step in the risk management process is to identify risks (see ISC2 Study Guide, Chapter 1, Module 2). Identifying risks involves understanding the potential threats and vulnerabilities that could affect an organization's information systems and data. Analyzing risks inv

Security Principles

Question

The first step in the risk management process is:

Options

  • AAssess risks
  • BAnalyze risks
  • CIdentify risks
  • DMitigate risks

Explanation

The first step in the risk management process is to identify risks (see ISC2 Study Guide, Chapter 1, Module 2). Identifying risks involves understanding the potential threats and vulnerabilities that could affect an organization's information systems and data. Analyzing risks involves assessing the probability and impact of the identified risks. Assessing risks involves determining the likelihood of a risk occurring and the potential impact of the risk. Mitigating risks involves taking steps to reduce the likelihood of a risk occurring or the impact of the risk if it does occur.

Topics

#risk management#risk management process#risk identification#security principles

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions