nerdexam
Isaca

COBIT-2019 · Question #263

Which of the following components should be considered for inclusion when considering the threat landscape design factor?

The correct answer is D. Information security focus areas. When considering the threat landscape design factor, it is important to consider a number of components, including information security focus areas. This includes identifying and understanding the threats that could affect the enterprise and the controls that are necessary to…

Designing and Implementing a Governance System

Question

Which of the following components should be considered for inclusion when considering the threat landscape design factor?

Options

  • ACompliance and assurance capabilities
  • BImpact and probability levels
  • CInformation flows including security policy
  • DInformation security focus areas

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    6% (2)
  • C
    12% (4)
  • D
    79% (27)

Explanation

When considering the threat landscape design factor, it is important to consider a number of components, including information security focus areas. This includes identifying and understanding the threats that could affect the enterprise and the controls that are necessary to mitigate them. Additionally, this involves considering the impact and probability levels of each threat, as well as the information flows and security policies that should be implemented to protect the enterprise from them. It is also important to consider compliance and assurance capabilities that are necessary to ensure that the enterprise is adhering to relevant regulations and best practices.

Topics

#threat landscape#design factors#information security#governance tailoring

Community Discussion

No community discussion yet for this question.

Full COBIT-2019 Practice