Governance & ComplianceQuestion 90 of 100
Eliminating a risky activity entirely so the risk no longer applies is known as:
a.Risk acceptance
b.Risk transference
c.Risk mitigation
d.Risk avoidance
Explanation
Risk avoidance removes the risk by discontinuing the activity that causes it. For example, not deploying a feature that would expose sensitive data. It fully eliminates that risk but may sacrifice a business opportunity.
Practice all 100 questions free — no signup required.
Related questions on this topic
- Which document outlines acceptable and prohibited uses of an organization's IT systems by employees?
- Which risk response involves purchasing insurance to shift financial impact to a third party?
- Choosing to take no action and knowingly bear a low-level risk is called:
- Which regulation governs the protection of personal data for individuals in the European Union?
- Which standard governs the secure handling of payment card data?
- Which US regulation protects the privacy and security of health information?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review