Governance & ComplianceQuestion 99 of 100
Which framework provides a widely used structure for managing cybersecurity risk through functions like Identify, Protect, Detect, Respond, and Recover?
a.NIST Cybersecurity Framework
b.OWASP Top Ten
c.MITRE ATT&CK
d.PCI DSS
Explanation
The NIST Cybersecurity Framework organizes security activities into core functions: Identify, Protect, Detect, Respond, and Recover. It offers a flexible, risk-based approach adaptable to any organization. It helps align security programs with business goals.
Practice all 100 questions free — no signup required.
Related questions on this topic
- A calculation of expected yearly loss from a risk, found by multiplying single loss expectancy by annual rate of occurrence, is the:
- Which assessment identifies the critical processes and the impact of their disruption to guide continuity planning?
- Which agreement defines the measurable service levels a provider must meet, such as uptime guarantees?
- Which legal agreement prohibits parties from disclosing confidential information they receive?
- The residual risk that remains after all controls have been applied should be:
- Regular training that teaches employees to recognize phishing and follow security policies is called:
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review