GAQM
CPEH-001 · Question #785
Suppose your company has just passed a security risk assessment exercise. The results display that the risk of the breach in the main company application is 50%. Security staff has taken some…
The correct answer is A. Accept the risk. See the full explanation below for the reasoning.
Question
Suppose your company has just passed a security risk assessment exercise. The results display that the risk of the breach in the main company application is 50%. Security staff has taken some measures and implemented the necessary controls. After that, another security risk assessment was performed showing that risk has decreased to 10%. The risk threshold for the application is 20%. Which of the following risk decisions will be the best for the project in terms of its successful continuation with the most business profit?
Options
- AAccept the risk
- BIntroduce more controls to bring risk to 0%
- CMitigate the risk
- DAvoid the risk
How the community answered
(55 responses)- A76% (42)
- B2% (1)
- C15% (8)
- D7% (4)
Community Discussion
No community discussion yet for this question.