[Cisspstudy] Simple but interesting CISSP Question

Jones, John CIV USA EUSA jojones at us.army.mil
Fri Mar 6 18:26:19 EST 2009


All, New to the list...

I think it's "B". I deal with alot of safety issues within my job, and one of the things they preach here is some risks cannot be eliminated, however you can reduce the effect of the risk to a level where it is acceptable safeywise. I would assume that the same can be said for security. Your first choice would be to eliminate the risk, and if not, reduce to a negligle effect...


GSJoJones

----- Original Message -----
From: Prakash <prakash2757 at yahoo.com>
Date: Saturday, March 7, 2009 0:29
Subject: [Cisspstudy] Simple but interesting CISSP Question
To: cisspstudy at cccure.org


> Hello All,
> 
> I came across this Simple but interesting CISSP Question
> 
> Q: What is meant by the term “risk mitigation” ?
> 
> A Elimination of risk.
> B Reduction of risk to an acceptable level.
> C Calculating vulnerabilities multiplied by threats.
> D Ranking risks in order of likelihood.
> 
> 
> Do give your answer & opinion
> 
> 
> 
> 
>      
> _______________________________________________
> cisspstudy mailing list
> cisspstudy at cccure.org
> http://cccure.org/mailman/listinfo/cisspstudy_cccure.org



More information about the cisspstudy mailing list