CISMP-V9 BCS Foundation Certificate in Information Security Management Principles V9.0

Loading demo links...

Showing 10–10 of 10 questions

Question 10

Which of the following describes a qualitative risk assessment approach?

Select an option, then click Submit answer.

  • A subjective assessment of risk occurrence likelihood against the potentialimpact that determines the overall severity of a risk.

  • The use of verifiable data to predict the risk occurrence likelihood and the potential impact so as to determine the overall severity of arisk.

  • The use of Monte-Carlo Analysis and Layers of Protection Analysis (LOPA) to determine the overall severity of a risk.

  • The use of Risk Tolerance and Risk Appetite values to determine the overall severity of a risk