ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 527 - SY0-601 discussion

Report
Export

The application development teams have been asked to answer the following questions:

Does this application receive patches from an external source?

Does this application contain open-source code?

Is this application accessible by external users?

Does this application meet the corporate password standard?

Which of the following are these questions part of?

A.
Risk control self-assessment
Answers
A.
Risk control self-assessment
B.
Risk management strategy
Answers
B.
Risk management strategy
C.
Risk acceptance
Answers
C.
Risk acceptance
D.
Risk matrix
Answers
D.
Risk matrix
Suggested answer: A

Explanation:

A risk control self-assessment (RCSA) is a process that allows an organization to identify, evaluate, and mitigate the risks associated with its activities, processes, systems, and products. A RCSA involves asking relevant questions to assess the effectiveness of existing controls and identify any gaps or weaknesses that need improvement. A RCSA also helps to align the risk appetite and tolerance of the organization with its strategic objectives and performance.

The application development teams have been asked to answer questions related to their applications' security posture, such as whether they receive patches from an external source, contain open-source code, are accessible by external users, or meet the corporate password standard. These questions are part of a RCSA process that aims to evaluate the potential risks and vulnerabilities associated with each application and determine how well they are managed and mitigated.

asked 02/10/2024
Juan Jose Montero Caletrio
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first