Isaca NIST-COBIT-2019 Practice Test - Questions Answers, Page 2
List of questions
Related questions
Analysis is one of the categories within which of the following Core Functions?
Detect
Respond
Recover
Which of the following is associated with the 'Detect' core function of the NIST Cybersecurity Framework?
Information Protection Processes and Procedures
Anomalies and Events
Risk Assessment
Within the CSF Core structure, which type of capability can be implemented to help practitioners recognize potential or realized risk to enterprise assets?
Protection capability
Response capability
Detection capability
The CSF Implementation Tiers distinguish three fundamental dimensions of risk management to help enterprises evaluate which of the following?
Cybersecurity posture
Cybersecurity threats
Cybersecurity landscape
What is the MOST important reason to compare framework profiles?
To improve security posture
To conduct a risk assessment
To identify gaps
The goals cascade supports prioritization of management objectives based on:
the prioritization of enterprise goals.
the prioritization of business objectives.
the prioritization of stakeholder needs.
The seven high-level CSF steps generally align to which of the following in COBIT 2019?
High-level phases
High-level functions
High-level categories
Which of the following is the MOST important input for prioritizing resources during program initiation?
Replacement cost
Risk register
Business impact assessment
Which CSF step corresponds to the COBIT objective of knowledge and understanding of enterprise goals?
Step 1: Prioritize and Scope
Step 6: Determine, Analyze, and Prioritize Gaps
Step 4: Conduct a Risk Assessment
Which of the following COBIT tasks and activities corresponds to CSF Step 1: Prioritize and Scope?
Understand the enterprise's capacity and capability for change.
Use change agents to communicate informally and formally.
Determine ability to implement the change.
Question