Study. uk . com
  1. Home
  2. All questions
  3. Question 24

CompTIA Security+ study material · question 24 of 611

Why does the Cybersecurity Framework encourage managing cybersecurity risk alongside financial, privacy, supply chain and reputational risk?

  1. Because cybersecurity risk cannot be quantified on its own
  2. Because cybersecurity risk competes for the same resources and decisions as the enterprise's other risks
  3. Because regulators require a combined register
  4. Because privacy risk always exceeds cybersecurity risk
Show the answer

Answer: B. Because cybersecurity risk competes for the same resources and decisions as the enterprise's other risks

Treating cybersecurity risk in a separate track hides the trade-offs the enterprise is actually making.

Source: NIST CSWP 29 (NIST) — NIST CSF 2.0 › Preface

Challenge yourself on this topic → Study as cards