Effective CISSP Questions

After risk assessment, your company plans to equip laptops used by sales representatives with FIPS 140-2 Level 3 compliant self-encrypting drives as a countermeasure to protect around 10% of confidential data stored on hard drives. You are analyzing the residual risk using a quantitative approach in another iteration of risk assessment after the risk treatment. Which of the following is the primary and direct factor subject to change due to the risk treatment? (Wentz QOTD)
A. Asset value
B. Exposure factor
C. Annual loss expectancy
D. Annualized rate of occurrence

Read more of this post

Wentz Wu | October 15, 2021 at 11:46 am | Categories: QOTD, Technology, 每日一題 | URL: https://wp.me/p2X0VJ-8PJ
Comment