Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 372 discussion

Actual exam question from ISC's CISSP
Question #: 372
Topic #: 1
[All CISSP Questions]

Which of the following goals represents a modern shift in risk management according to National Institute of Standards and Technology (NIST)?

  • A. Provide an improved mission accomplishment approach.
  • B. Focus on operating environments that are changing, evolving, and full of emerging threats.
  • C. Enable management to make well-informed risk-based decisions justifying security expenditure.
  • D. Secure information technology (IT) systems that store, mass, or transmit organizational information.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Loveguitar
Highly Voted 2 years, 2 months ago
C is correct according to NIST SP 800-39
upvoted 5 times
...
YesPlease
Most Recent 11 months, 1 week ago
Selected Answer: B
Answer B) https://fedscoop.com/nist-health-cyber-guidance-revision-2/#:~:text=Revision%202%20shifts%20focus%20to%20risk%20management%20of%20environmental%20threats
upvoted 1 times
...
xxxBadManxxx
1 year, 2 months ago
A: According to the National Institute of Standards and Technology (NIST) and modern risk management practices, there is a shift towards a greater focus on operating environments that are changing, evolving, and full of emerging threats. This shift recognizes the dynamic and ever-evolving nature of cybersecurity threats and the need for organizations to adapt to these changes continuously. Option A reflects the idea of embracing a proactive and adaptive approach to risk management, which aligns with modern cybersecurity principles. While the other options (B, C, and D) are important aspects of risk management and security practices, they do not specifically represent the modern shift towards addressing evolving threats and operating environments:
upvoted 1 times
...
SFTrooper
2 years ago
Agree with B due to "shift" at NIST . If not for that would select C
upvoted 2 times
jackdryan
1 year, 6 months ago
B is correct
upvoted 1 times
...
...
Mann0302
2 years ago
Modern shift = emerging threats. Is nothing new about expenditure. Asking for funds especially for security has always been a problem for companies, is nothing new there until they get hit.
upvoted 1 times
...
WiDeBarulho
2 years, 1 month ago
Selected Answer: B
There is nothing "modern" in option "C" as that has always been the case. Option "B" addresses more modern risk challenges especially with BYOD and the cloud.
upvoted 2 times
...
Nickname53796
2 years, 1 month ago
Selected Answer: C
Goals. Not task.
upvoted 1 times
...
JAckThePip
2 years, 1 month ago
think as a manager
upvoted 2 times
...
CuteRabbit168
2 years, 1 month ago
Selected Answer: B
Going for B. An update to NIST’s Cybersecurity Framework coming soon: https://www.nextgov.com/cybersecurity/2021/12/nist-outlines-request-information-toward-new-cybersecurity-framework/187427/
upvoted 4 times
klarak
6 months, 3 weeks ago
Great find. This looks right.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...