ExamGecko
Question list
Search
Search

Question 10 - NIST-COBIT-2019 discussion

Report
Export

What does a CSF Informative Reference within the CSF Core provide?

A.

A high-level strategic view of the life cycle of an organization's management of cybersecurity risk

Answers
A.

A high-level strategic view of the life cycle of an organization's management of cybersecurity risk

B.

A group of cybersecurity outcomes tied to programmatic needs and particular activities

Answers
B.

A group of cybersecurity outcomes tied to programmatic needs and particular activities

C.

Specific sections of standards, guidelines, and practices that illustrate a method to achieve an associated outcome

Answers
C.

Specific sections of standards, guidelines, and practices that illustrate a method to achieve an associated outcome

Suggested answer: C

Explanation:

A CSF Informative Reference within the CSF Core provides a citation to a related activity from another standard or guideline that can help an organization achieve the outcome described in a CSF Subcategory12. For example, the Informative Reference for ID.AM-1 (Physical devices and systems within the organization are inventoried) is COBIT 5 APO01.01, which states 'Maintain an inventory of IT assets'3.

asked 18/11/2024
Aleksey Koltsov
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first