(ISC)2(ISC)2
CGRC · Question #143
CGRC Question #143: Real Exam Question with Answer & Explanation
Sign in or unlock CGRC to reveal the answer and full explanation for question #143. The question stem and answer options stay visible for context.
Assessment/Audit of Security and Privacy Controls
Question
Which of the following is an example of the test assessment Method according to NIST SP 800- 37 Rev 2? Response:
Options
- AReading vulnerability scan policies and procedure
- BConducting a vulnerability scan on web applications
- CAsking administrators about the scanning process
- DReviewing the most recent scan reports
Unlock CGRC to see the answer
You've previewed enough free CGRC questions. Unlock CGRC for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#NIST SP 800-37#Assessment Methods#Vulnerability Scanning#Risk Management Framework