You have been asked to perform a risk assessment for your organization. You identify all organizational assets and determine the asset value for each. What should you do next?

A. Balance the threat impact with countermeasure cost.
B. Identify critical processes and resources.
C. Calculate business impact.
D. Identify vulnerabilities and threats.


D

Explanation: Risk assessment or analysis has four main steps:
1. Identify assets and asset value.
2. Identify vulnerabilities and threats.
3. Calculate threat probability and business impact.
4. Balance threat impact with countermeasure cost.

Computer Science & Information Technology

You might also like to view...

Which of the following is not true about a form's class declaration?

a. It contains a detailed description of a form. b. It’s similar to a blueprint for a house. c. It creates an instance of the form. d. It contains the form’s event handlers.

Computer Science & Information Technology

Charts represent tables of data graphically

Indicate whether the statement is true or false

Computer Science & Information Technology

The advantages of Scrum are:

What will be an ideal response?

Computer Science & Information Technology

On a slide, a placeholder is a preformatted area that defines the type of information to place in an area on the slide

Indicate whether the statement is true or false

Computer Science & Information Technology