フリー問題

Implementing the NIST Cybersecurity Framework Using COBIT 2019 Certificate のフリー問題 19 / 20 問目

問題文

A payments processor has finished its Current Profile and moves to the risk assessment step. The team proposes to score each unachieved outcome by how many staff hours it would take to achieve. Why does that scoring miss what the step asks for?

選択肢

  1. The step analyzes the operating environment to discern internal staffing levels, so the score must rest on possible business impact rather than on the implementation effort a fix would take.
  2. The step analyzes the operating environment to discern internal staffing levels, so the score must rest on discretionary funding levels rather than on the implementation effort a fix would take.
  3. The step analyzes the operating environment to discern estimated event likelihood, so the score must rest on discretionary funding levels rather than on the implementation effort a fix would take.
  4. The step analyzes the operating environment to discern estimated event likelihood, so the score must rest on possible business impact rather than on the implementation effort a fix would take.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。