nerdexam
GAQM

CPEH-001 · Question #785

Suppose your company has just passed a security risk assessment exercise. The results display that the risk of the breach in the main company application is 50%. Security staff has taken some…

The correct answer is A. Accept the risk. See the full explanation below for the reasoning.

Question

Suppose your company has just passed a security risk assessment exercise. The results display that the risk of the breach in the main company application is 50%. Security staff has taken some measures and implemented the necessary controls. After that, another security risk assessment was performed showing that risk has decreased to 10%. The risk threshold for the application is 20%. Which of the following risk decisions will be the best for the project in terms of its successful continuation with the most business profit?

Options

  • AAccept the risk
  • BIntroduce more controls to bring risk to 0%
  • CMitigate the risk
  • DAvoid the risk

How the community answered

(55 responses)
  • A
    76% (42)
  • B
    2% (1)
  • C
    15% (8)
  • D
    7% (4)

Community Discussion

No community discussion yet for this question.

Full CPEH-001 Practice