exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 70 discussion

Actual exam question from CompTIA's CS0-002
Question #: 70
Topic #: 1
[All CS0-002 Questions]

A newly appointed Chief Information Security Officer has completed a risk assessment review of the organization and wants to reduce the numerous risks that were identified. Which of the following will provide a trend of risk mitigation?

  • A. Planning
  • B. Continuous monitoring
  • C. Risk response
  • D. Risk analysis
  • E. Oversight
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
db97
Highly Voted 2 years, 4 months ago
Selected Answer: B
It's obviously they will respond, but they want to validate the trend over the time, so continuous monitoring can provide this.
upvoted 10 times
2Fish
2 years, 3 months ago
Agree. Thanks for the input.
upvoted 3 times
...
db97
2 years, 4 months ago
Continuous monitoring is an approach where an organization constantly monitors its IT systems and networks to detect security threats, performance issues, or non-compliance problems in an automated manner. The goal is to identify potential problems and threats in real time to address them quickly.
upvoted 2 times
...
...
m025
Most Recent 1 year, 3 months ago
Selected Answer: A
For me it's planning. He identified the risks that it plan how to response to each one, that implement the response, finally he monitored the result and the new risk restarting the cycle.
upvoted 1 times
...
skibby16
1 year, 7 months ago
Selected Answer: B
The key is "Which of the following will provide a trend of risk mitigation" How do you find trends? Continuous Monitoring will allow you to see trends and mitigate adverse trends etc...
upvoted 1 times
...
Rori791
1 year, 11 months ago
Selected Answer: B
The key word here is “ trend of risk mitigation”.. at first my answer was C but when I searched about the meaning of the word I switched it to B. A trend of risk mitigation refers to the ability to track and monitor the effectiveness of risk mitigation efforts over time. It involves continuously assessing the effectiveness of implemented security controls and risk management strategies to determine if they are reducing the organization's exposure to risk.
upvoted 2 times
...
kiduuu
2 years, 2 months ago
Selected Answer: C
Risk response involves taking specific actions to reduce, transfer, or mitigate the risks that have been identified through the risk assessment process.
upvoted 2 times
...
HereToStudy
2 years, 2 months ago
Selected Answer: C
the question states that the risks have already been identified through the risk assessment review, then the option that will provide a trend of risk mitigation would be C. Risk response.
upvoted 2 times
...
josephconer1
2 years, 2 months ago
Per the CompTIA CySA+ CS0-002 textbook: Topic 7A - Speaking on the risk identification process-- "Respond—'Mitigate' each risk factor through the deployment of managerial, operational, and technical security controls. Key word in the question is mitigation. This clearly means the answer is C
upvoted 1 times
...
encxorblood
2 years, 4 months ago
Selected Answer: B
Answer B - Risk response (option C) is focused on addressing risks that have been identified, but it does not provide a trend of risk mitigation.
upvoted 4 times
NerdAlert
2 years, 2 months ago
I was so sure it was C til I read this - great point, they wanna start a trend not, just respond to this issue
upvoted 1 times
...
...
IanRogerStewart
2 years, 4 months ago
Selected Answer: C
It's the mitigation thing that's critical here. Monitoring isn't mitigating
upvoted 1 times
...
absabs
2 years, 4 months ago
Selected Answer: C
Just monitoring without taking action is useless. Easy question, i going with C.
upvoted 1 times
...
AaronS1990
2 years, 4 months ago
Selected Answer: C
Which of the following will provide a trend of risk mitigation? For me this has to be C. He has carried out the risk assesment and identified issues, surely the next stage is risk response... Though i understand people who are saying B, i think some of you (respectfully) are getting too caught up on the term 'trend' and tying that to continuous monitoring
upvoted 1 times
...
gnnggnnggnng
2 years, 4 months ago
Selected Answer: B
Risk response is an important part of the risk management process and involves implementing measures to mitigate or transfer the risks identified during the risk analysis. However, risk response alone does not provide a trend of risk mitigation, as it only addresses the risks that have been identified in a specific point in time. Continuous monitoring, on the other hand, involves ongoing assessment of the organization's security posture and the identification of new risks. By regularly monitoring the organization's security, the CISO can identify trends in risk mitigation and make adjustments to the risk management plan as needed. This provides a more comprehensive view of the organization's risk landscape and the effectiveness of the risk mitigation measures in place.
upvoted 2 times
...
Stiobhan
2 years, 4 months ago
This is close, however I'd need to opt for C as to pull trend analysis data, I need to see the how and the why of mitigation over a period of time. Response actions would give me that better than continuous monitoring. See this article, points 5 and 6 are so close - https://securityscorecard.com/blog/6-strategies-for-cybersecurity-risk-mitigation
upvoted 1 times
...
david124
2 years, 5 months ago
Selected Answer: B
chat GBT says B
upvoted 1 times
...
kmanb
2 years, 5 months ago
Selected Answer: B
The best option that will provide a trend of risk mitigation is B. Continuous monitoring. Continuous monitoring is the ongoing process of assessing the security controls in an organization to identify vulnerabilities, threats, and risks. It also involves analyzing the results of security testing, incident response, and other security-related activities to identify trends and patterns that can be used to improve the security of the organization. By continuously monitoring the organization, the Chief Information Security Officer can identify and address new and emerging risks, which will help to reduce the overall risk to the organization.
upvoted 1 times
...
MortG7
2 years, 8 months ago
Selected Answer: C
After risk assessment review --->comes Risk response
upvoted 1 times
...
MortG7
2 years, 8 months ago
risk mitigation is an attempt to minimize the chances of a potential attack...thus Risk Response..C is correct
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...