ExamGecko
Question list
Search
Search

List of questions

Search

Question 24 - COBIT Design and Implementation discussion

Report
Export

Which of the following components should be considered for inclusion when considering the threat landscape design factor?

A.
Compliance and assurance capabilities
Answers
A.
Compliance and assurance capabilities
B.
Information security focus areas
Answers
B.
Information security focus areas
C.
Information flows including security policy
Answers
C.
Information flows including security policy
D.
Impact and probability levels
Answers
D.
Impact and probability levels
Suggested answer: D

Explanation:

When considering the threat landscape design factor, impact and probability levels should be considered for inclusion. These levels help in assessing the potential consequences and likelihood of various threats, which is essential for effective risk management and governance.

In the COBIT 2019 framework, the threat landscape design factor involves understanding and evaluating the risks that an enterprise may face. Impact and probability levels are critical components of this evaluation as they provide a basis for prioritizing threats and developing appropriate responses.

COBIT 2019 Framework

Reference:

COBIT 2019 Design Guide, Chapter 2: Discusses the importance of understanding the threat landscape and evaluating threats based on their impact and probability.

COBIT 2019 Framework: Governance and Management Objectives: Emphasizes the need for a thorough risk assessment, which includes analyzing the impact and probability of potential threats.

Including impact and probability levels in the assessment of the threat landscape ensures a comprehensive understanding of risks, enabling the enterprise to prioritize and mitigate threats effectively.

asked 18/09/2024
Veacheslav Stasiuc
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first