Governance & ComplianceQuestion 100 of 100
Regular training that teaches employees to recognize phishing and follow security policies is called:
a.Penetration testing
b.Security awareness training
c.Change management
d.Vulnerability management
Explanation
Security awareness training educates users to recognize threats like phishing and to follow safe practices. Because people are a common attack vector, this reduces human-related risk. Ongoing and simulated exercises reinforce the behavior over time.
Practice all 100 questions free — no signup required.
Related questions on this topic
- A calculation of expected yearly loss from a risk, found by multiplying single loss expectancy by annual rate of occurrence, is the:
- Which assessment identifies the critical processes and the impact of their disruption to guide continuity planning?
- Which agreement defines the measurable service levels a provider must meet, such as uptime guarantees?
- Which legal agreement prohibits parties from disclosing confidential information they receive?
- The residual risk that remains after all controls have been applied should be:
- Which framework provides a widely used structure for managing cybersecurity risk through functions like Identify, Protect, Detect, Respond, and Recover?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review