Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exc65

What does a CSF Informative Reference within the CSF Core provide?

A.

A high-level strategic view of the life cycle of an organization's management of cybersecurity risk

B.

A group of cybersecurity outcomes tied to programmatic needs and particular activities

C.

Specific sections of standards, guidelines, and practices that illustrate a method to achieve an associated outcome

What is the MOST important reason to compare framework profiles?

A.

To improve security posture

B.

To conduct a risk assessment

C.

To identify gaps

Which of the following is CRITICAL for the success of CSF Step 6: Determine, Analyze and Prioritize Gaps?

A.

Identification of threats and vulnerabilities related to key assets

B.

Experience in behavioral and change management

C.

Clear understanding of the likelihood and impact of cybersecurity events

In which CSF step should an enterprise document its existing category and subcategory outcome achievements?

A.

Step 1: Prioritize and Scope

B.

Step 3: Create a Current Profile

C.

Step 4: Conduct a Risk Assessment

Which of the following is an important consideration when defining the roadmap in COBIT Implementation Phase 3 - Where Do We Want to Be?

A.

Agreed metrics for measuring outcomes

B.

Reporting procedures and requirements

C.

Change-enablement implications

Which of the following functions provides foundational activities for the effective use of the Cybersecurity Framework?

A.

Protect

B.

Identify

C.

Detect

During Step 3: Create a Current Profile, an enterprise outcome has reached a 95% subcategory maturity level. How would this level of achievement be

described in the COBIT Performance Management Rating Scale?

A.

Largely Achieved

B.

Partially Achieved

C.

Fully Achieved

Within the CSF Core structure, which type of capability can be implemented to help practitioners recognize potential or realized risk to enterprise assets?

A.

Protection capability

B.

Response capability

C.

Detection capability

Which of the following is a PRIMARY input into Steps 2 and 3: Orient and Create a Current Profile?

A.

Evaluating business cases

B.

Updating business cases

C.

Defining business cases

Which of the following is MOST important for successful execution of CSF implementation Step 6 - Determine, Analyze, and Prioritize Gaps?

A.

Have management review and approve the gap analysis.

B.

Engage external experts to perform a cost-benefit analysis.

C.

Engage business and IT process owners for internal expertise.