CERTIFIED-IN-CYBERSECURITY · Question #639
What is the purpose of a risk assessment?
The correct answer is A. To evaluate the potential impact of threats to the organization. A risk assessment is the process of identifying, analyzing, and evaluating potential threats and their likely impact on an organization. The goal is to understand what can go wrong, how likely it is, and what damage it could cause - enabling informed decisions about how to…
Question
What is the purpose of a risk assessment?
Options
- ATo evaluate the potential impact of threats to the organization
- BTo define recovery time objectives for critical systems and data
- CTo establish procedures for restoring critical systems and data
- DTo identify critical business functions
How the community answered
(29 responses)- A93% (27)
- B3% (1)
- C3% (1)
Explanation
A risk assessment is the process of identifying, analyzing, and evaluating potential threats and their likely impact on an organization. The goal is to understand what can go wrong, how likely it is, and what damage it could cause - enabling informed decisions about how to mitigate those risks. The other options describe related but distinct processes: RTO definition is part of Business Impact Analysis (BIA), restoring systems is disaster recovery, and identifying critical business functions is part of a BIA or business continuity planning.
Topics
Community Discussion
No community discussion yet for this question.