exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 372 discussion

Actual exam question from ISC's CISSP
Question #: 372
Topic #: 1
[All CISSP Questions]

Which of the following goals represents a modern shift in risk management according to National Institute of Standards and Technology (NIST)?

  • A. Provide an improved mission accomplishment approach.
  • B. Focus on operating environments that are changing, evolving, and full of emerging threats.
  • C. Enable management to make well-informed risk-based decisions justifying security expenditure.
  • D. Secure information technology (IT) systems that store, mass, or transmit organizational information.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Loveguitar
Highly Voted 1 year, 12 months ago
C is correct according to NIST SP 800-39
upvoted 5 times
...
YesPlease
Most Recent 8 months, 3 weeks ago
Selected Answer: B
Answer B) https://fedscoop.com/nist-health-cyber-guidance-revision-2/#:~:text=Revision%202%20shifts%20focus%20to%20risk%20management%20of%20environmental%20threats
upvoted 1 times
...
xxxBadManxxx
1 year ago
A: According to the National Institute of Standards and Technology (NIST) and modern risk management practices, there is a shift towards a greater focus on operating environments that are changing, evolving, and full of emerging threats. This shift recognizes the dynamic and ever-evolving nature of cybersecurity threats and the need for organizations to adapt to these changes continuously. Option A reflects the idea of embracing a proactive and adaptive approach to risk management, which aligns with modern cybersecurity principles. While the other options (B, C, and D) are important aspects of risk management and security practices, they do not specifically represent the modern shift towards addressing evolving threats and operating environments:
upvoted 1 times
...
SFTrooper
1 year, 9 months ago
Agree with B due to "shift" at NIST . If not for that would select C
upvoted 2 times
jackdryan
1 year, 3 months ago
B is correct
upvoted 1 times
...
...
Mann0302
1 year, 9 months ago
Modern shift = emerging threats. Is nothing new about expenditure. Asking for funds especially for security has always been a problem for companies, is nothing new there until they get hit.
upvoted 1 times
...
WiDeBarulho
1 year, 10 months ago
Selected Answer: B
There is nothing "modern" in option "C" as that has always been the case. Option "B" addresses more modern risk challenges especially with BYOD and the cloud.
upvoted 2 times
...
Nickname53796
1 year, 11 months ago
Selected Answer: C
Goals. Not task.
upvoted 1 times
...
JAckThePip
1 year, 11 months ago
think as a manager
upvoted 2 times
...
CuteRabbit168
1 year, 11 months ago
Selected Answer: B
Going for B. An update to NIST’s Cybersecurity Framework coming soon: https://www.nextgov.com/cybersecurity/2021/12/nist-outlines-request-information-toward-new-cybersecurity-framework/187427/
upvoted 4 times
klarak
4 months ago
Great find. This looks right.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago