COBIT-2019 · Question #263
Which of the following components should be considered for inclusion when considering the threat landscape design factor?
The correct answer is D. Information security focus areas. When considering the threat landscape design factor, it is important to consider a number of components, including information security focus areas. This includes identifying and understanding the threats that could affect the enterprise and the controls that are necessary to…
Question
Which of the following components should be considered for inclusion when considering the threat landscape design factor?
Options
- ACompliance and assurance capabilities
- BImpact and probability levels
- CInformation flows including security policy
- DInformation security focus areas
How the community answered
(34 responses)- A3% (1)
- B6% (2)
- C12% (4)
- D79% (27)
Explanation
When considering the threat landscape design factor, it is important to consider a number of components, including information security focus areas. This includes identifying and understanding the threats that could affect the enterprise and the controls that are necessary to mitigate them. Additionally, this involves considering the impact and probability levels of each threat, as well as the information flows and security policies that should be implemented to protect the enterprise from them. It is also important to consider compliance and assurance capabilities that are necessary to ensure that the enterprise is adhering to relevant regulations and best practices.
Topics
Community Discussion
No community discussion yet for this question.