nerdexam
(ISC)2(ISC)2

CGRC · Question #4

CGRC Question #4: Real Exam Question with Answer & Explanation

The correct answer is A: Adversary. An adversary is an individual, group, organization, or government that conducts or intends to conduct detrimental activities against an organization.

Security and Privacy Governance, Risk Management, and Compliance Program

Question

Individual, group, organization, or government that conducts or has the intent to conduct detrimental activities. Response:

Options

  • AAdversary
  • BEnterprise
  • CCountermeasures
  • DAssurance

Explanation

An adversary is an individual, group, organization, or government that conducts or intends to conduct detrimental activities against an organization.

Common mistakes.

  • B. An enterprise is an organization or a business entity, not an agent that conducts detrimental activities.
  • C. Countermeasures are actions, devices, procedures, or techniques that reduce a vulnerability or protect against a threat, not the entity posing the threat.
  • D. Assurance refers to the level of confidence that security controls are effective, not the source of detrimental activities.

Concept tested. Information security adversary definition

Reference. https://csrc.nist.gov/glossary/term/adversary

Topics

#Adversary#Threat Actor#Risk Management#Cybersecurity Terminology

Community Discussion

No community discussion yet for this question.

Full CGRC PracticeBrowse All CGRC Questions