A company wants to quantify and communicate the effectiveness of its security controls but must establish measures. Which of the following is MOST likely to be included in an effective assessment roadmap for these controls?
Key Performance Indicators are a formal mechanism designed to measure the effectiveness of a cybersecurity program by defining the crucial goals and desired outcomes of the program.
Assessment roadmap is a higher level strategic plan that will include KPI's to measure if the project is behind, on time, or ahead of schedule. An integrated master schedule is more detailed and would be between the Project Manager (PM) and the team. An IMS gives a detailed breakdown of subtasks to perform to complete an overall task of the entire project.
https://tensix.com/what-is-an-integrated-master-schedule/
Therefore B has to be the answer, even though Chat GPT and other sources make a good point for C.
Source: Source:
Verifying each answer against Chat GPT, my experience, other test banks, a written book, and weighing in the discussion from all users to create a 100% accurate guide for myself before I take the exam. (It isn't easy because of the time needed, but it is doing my diligence)
To quantify and communicate the effectiveness of security controls, the most likely inclusion in an effective assessment roadmap would be to establish key performance indicators (KPIs). Key performance indicators are measurable metrics that help assess the performance and effectiveness of security controls. They provide a quantifiable way to track and evaluate the success of security measures in achieving their objectives.
KPIs are measurable values that are used to track and evaluate the performance of an organization or system against defined goals. In the context of security controls, KPIs could include metrics such as the percentage of vulnerabilities that are promptly patched, the number of successful and attempted cyber attacks, and the cost of security breaches. By establishing KPIs, a company can quantify and communicate the effectiveness of its security controls and track progress over time.
The purpose of the Integrated master schedule is to manage critical activities, asses progress and performance, and fully utilizing resources
https://www.lce.com/Integrated-Master-Schedule-IMS-2073.html
upvoted 1 times
...
This section is not available anymore. Please use the main Exam Page.CAS-004 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Sloananne
Highly Voted 1 year, 9 months agoBiteSize
Most Recent 11 months, 2 weeks agoAlizadeh
1 year, 1 month agoatebyasandwich
1 year, 6 months agoMr_BuCk3th34D
1 year, 6 months agofastcertification
1 year, 9 months agodangerelchulo
1 year, 10 months ago