Governance & Compliance第 90 / 100 题
Eliminating a risky activity entirely so the risk no longer applies is known as:
a.Risk acceptance
b.Risk transference
c.Risk mitigation
d.Risk avoidance
解析
Risk avoidance removes the risk by discontinuing the activity that causes it. For example, not deploying a feature that would expose sensitive data. It fully eliminates that risk but may sacrifice a business opportunity.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- Which document outlines acceptable and prohibited uses of an organization's IT systems by employees?
- Which risk response involves purchasing insurance to shift financial impact to a third party?
- Choosing to take no action and knowingly bear a low-level risk is called:
- Which regulation governs the protection of personal data for individuals in the European Union?
- Which standard governs the secure handling of payment card data?
- Which US regulation protects the privacy and security of health information?