ExamGecko
Question list
Search
Search

Question 20 - IT Risk Fundamentals discussion

Report
Export

What is the basis for determining the sensitivity of an IT asset?

A.

Potential damage to the business due to unauthorized disclosure

Answers
A.

Potential damage to the business due to unauthorized disclosure

B.

Cost to replace the asset if lost, damaged, or deemed obsolete

Answers
B.

Cost to replace the asset if lost, damaged, or deemed obsolete

C.

Importance of the asset to the business

Answers
C.

Importance of the asset to the business

Suggested answer: A

Explanation:

The sensitivity of an IT asset is determined primarily by the potential damage to the business due to unauthorized disclosure. This assessment considers the confidentiality, integrity, and availability of the asset and the impact its compromise could have on the organization. Sensitive assets often contain critical information or support vital business processes, making their protection paramount. By focusing on the potential damage from unauthorized disclosure, organizations can prioritize their security efforts on assets that would cause significant harm if compromised. This approach is consistent with risk assessment methodologies found in standards such as ISO 27001 and NIST SP 800-53.

asked 18/11/2024
Yassin Benjajji
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first