ExamGecko
Question list
Search
Search

Question 407 - CISM discussion

Report
Export

Which of the following is the GREATEST challenge with assessing emerging risk in an organization?

A.
Lack of a risk framework
Answers
A.
Lack of a risk framework
B.
Ineffective security controls
Answers
B.
Ineffective security controls
C.
Presence of known vulnerabilities
Answers
C.
Presence of known vulnerabilities
D.
Incomplete identification of threats
Answers
D.
Incomplete identification of threats
Suggested answer: D

Explanation:

The greatest challenge with assessing emerging risk in an organization is the incomplete identification of threats, as emerging risks are often new, unknown, or unfamiliar, and may not be fully understood or assessed. Incomplete identification of threats can lead to gaps in risk analysis and management, and expose the organization to unexpected or unprepared scenarios. The other options, such as lack of a risk framework, ineffective security controls, or presence of known vulnerabilities, are not specific to emerging risks, and may apply to any type of risk assessment.

Reference:

https://committee.iso.org/sites/tc262/home/projects/ongoing/iso-31022-guidelines-for-impl-2.html

https://www.isaca.org/resources/news-and-trends/newsletters/atisaca/2023/volume-6/emerging-risk-analysis

https://projectriskcoach.com/emerging-risks/

asked 01/10/2024
Ferran Ortega Torrabadell
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first