(ISC)2(ISC)2
SSCP · Question #1251
SSCP Question #1251: Real Exam Question with Answer & Explanation
The correct answer is C: Countermeasure. A countermeasure is a method or technique implemented to reduce the impact of a threat or vulnerability on an information system.
Submitted by mateo_ar· Apr 18, 2026Security Concepts and Practices
Question
A ______________ is a means, method, or program to neutralize a threat or vulnerability.
Options
- ARisk Assessment
- BVulnerability Scan
- CCountermeasure
- DFirewall
Explanation
A countermeasure is a method or technique implemented to reduce the impact of a threat or vulnerability on an information system.
Common mistakes.
- A. A Risk Assessment is the process of identifying and evaluating risks, not a means to neutralize them.
- B. A Vulnerability Scan is a tool or process used to identify vulnerabilities, but it does not neutralize them itself.
- D. A Firewall is a specific type of countermeasure designed to control network traffic, but it is not the overarching term for any means to neutralize a threat.
Concept tested. Definition of security countermeasure
Reference. https://csrc.nist.gov/glossary/term/countermeasure
Topics
#Countermeasures#Threats#Vulnerabilities#Security Controls
Community Discussion
No community discussion yet for this question.