ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 84 - CS0-003 discussion

Report
Export

After identifying a threat, a company has decided to implement a patch management program to remediate vulnerabilities. Which of the following risk management principles is the company exercising?

A.
Transfer
Answers
A.
Transfer
B.
Accept
Answers
B.
Accept
C.
Mitigate
Answers
C.
Mitigate
D.
Avoid
Answers
D.
Avoid
Suggested answer: C

Explanation:

Mitigate is the best term to describe the risk management principle that the company is exercising, as it means to reduce the likelihood or impact of a risk. By implementing a patch management program to remediate vulnerabilities, the company is mitigating the threat of cyberattacks that could exploit those vulnerabilities and compromise the security or functionality of the systems. The other terms are not as accurate as mitigate, as they describe different risk management principles. Transfer means to shift the responsibility or burden of a risk to another party, such as an insurer or a contractor. Accept means to acknowledge the existence of a risk and decide not to take any action to reduce it, usually because the risk is low or the cost of mitigation is too high. Avoid means to eliminate the possibility of a risk by changing the plans or activities that could cause it, such as cancelling a project or discontinuing a service.

asked 02/10/2024
Robert Thompson
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first