100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
CISM Domain 2: Information Security Risk Management Practice Questions and Answers (100% Pass) $12.49   Add to cart

Exam (elaborations)

CISM Domain 2: Information Security Risk Management Practice Questions and Answers (100% Pass)

 6 views  0 purchase
  • Course
  • CISM
  • Institution
  • CISM

CISM Domain 2: Information Security Risk Management Practice Questions and Answers (100% Pass) What is the formula to calculate Risk? - Answer️️ -Risk = Threat * Vulnerability - This is a qualitative analysis of risk to our assets - You need to identify your assets before calculating the ri...

[Show more]

Preview 3 out of 20  pages

  • August 16, 2024
  • 20
  • 2024/2025
  • Exam (elaborations)
  • Questions & answers
  • CISM
  • CISM
avatar-seller
OliviaWest
©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM



CISM Domain 2: Information Security Risk Management
Practice Questions and Answers (100% Pass)


What is the formula to calculate Risk? - Answer✔️✔️-Risk = Threat * Vulnerability


- This is a qualitative analysis of risk to our assets

- You need to identify your assets before calculating the risk of operating them


What is the Risk Management lifecycle? - Answer✔️✔️-- IT Risk Identification


- IT Risk Assessment

- Risk Response and Mitigation

- Risk and Control Monitoring and Reporting


What is the formula to calculate how bad the risk will be? - Answer✔️✔️-Risk =

Threat * Vulnerability * Impact


What is the formula to calculate Total Risk? - Answer✔️✔️-Total Risk = Threat *

Vulnerability * Asset Value


What is the formula to calculate Residual Risk? - Answer✔️✔️-Residual Risk =

Total Risk - Countermeasures




1

,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM


What is Qualitative Risk Analysis? - Answer✔️✔️-How likely is a risk to happen

and how bad is the impact if it does happen?

- This is feeling based analysis


What is Quantitative Risk Analysis? - Answer✔️✔️-What will a risk cost us if it's to

happen?

- This is fact based analysis


What is a Risk Analysis Matrix? - Answer✔️✔️-A visual representation of risk

organized by likelihood (rare to certain) and consequences (insignificant to

catastrophic).


What is a Risk Register? - Answer✔️✔️-A spreadsheet used to categorize and group

risk in columns by name, risk #, probability, impact, mitigation, contingency, and

residual risk score.


What is Asset Value (AV)? - Answer✔️✔️-How much an asset is worth.


What is Exposure Factor (EF)? - Answer✔️✔️-The percentage of the asset loss.


What is Single Loss Expectancy (SLE)? - Answer✔️✔️-How much would it cost if it

happened once.




2

, ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM


What is the formula to calculate Single Loss Expectancy (SLE)? - Answer✔️✔️-SLE

= AV * EF


What is Annual Rate of Occurrence (ARO)? - Answer✔️✔️-How often something

will happen each year.


What is Annual Loss Expectancy (ALE)? - Answer✔️✔️-What it costs per year if we

do nothing.


What is Total Cost of Ownership (TCO)? - Answer✔️✔️-The cost of owning and

operating something.


What is the formula for Total Cost of Ownership (TCO)? - Answer✔️✔️-Upfront

cost + mitigation cost + operational cost


What is Secondary Risk? - Answer✔️✔️-What you get when you mitigate one risk

and unintentionally open up another risk.


What are the steps to NIST 800-30? - Answer✔️✔️-The 9-step process for Risk

Management.




1. System Characterization (risk scope, system/data sensitivity)

2. Threat Identification (threats to system)



3

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller OliviaWest. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for $12.49. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

72964 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy study notes for 14 years now

Start selling
$12.49
  • (0)
  Add to cart