ExamGecko
Question list
Search
Search

Question 48 - NIST-COBIT-2019 discussion

Report
Export

When aligning to the NIST Cybersecurity Framework, what should occur after tier levels and framework core outcomes are determined?

A.

Report discovered issues to senior management.

Answers
A.

Report discovered issues to senior management.

B.

Assign mitigating control development.

Answers
B.

Assign mitigating control development.

C.

Compare current and target profiles.

Answers
C.

Compare current and target profiles.

Suggested answer: C

Explanation:

According to the NIST Cybersecurity Framework, after determining the tier levels and framework core outcomes, the next step is to compare the current and target profiles, which describe the organization's current and desired cybersecurity posture based on the framework core functions, categories, and subcategories1. This comparison helps to identify the gaps and prioritize the actions for improvement2.

Reference Cybersecurity Framework Components | NIST What is the NIST Cybersecurity Framework? | IBM

asked 18/11/2024
Sukhpal Singh
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first