ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 252 - CS0-003 discussion

Report
Export

Which of the following is a useful tool for mapping, tracking, and mitigating identified threats and vulnerabilities with the likelihood and impact of occurrence?

A.
Risk register
Answers
A.
Risk register
B.
Vulnerability assessment
Answers
B.
Vulnerability assessment
C.
Penetration test
Answers
C.
Penetration test
D.
Compliance report
Answers
D.
Compliance report
Suggested answer: A

Explanation:

A risk register is a useful tool for mapping, tracking, and mitigating identified threats and vulnerabilities with the likelihood and impact of occurrence. A risk register is a document that records the details of all the risks identified in a project or an organization, such as their sources, causes, consequences, probabilities, impacts, and mitigation strategies. A risk register can help the security team to prioritize the risks based on their severity and urgency, and to monitor and control them throughout the project or the organization's lifecycle12. A vulnerability assessment, a penetration test, and a compliance report are all methods or outputs of identifying and evaluating the threats and vulnerabilities, but they are not tools for mapping, tracking, and mitigating them345.

Reference: What is a Risk Register? | Smartsheet, Risk Register: Definition & Example, Vulnerability Assessment vs. Penetration Testing: What's the Difference?, What is a Penetration Test and How Does It Work?, What is a Compliance Report? | Definition, Types, and Examples

asked 02/10/2024
Lara Umemoto
49 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first