Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca COBIT-Design-and-Implementation Exam - Topic 4 Question 41 Discussion

Which of the following components should be considered for inclusion when considering the threat landscape design factor?
D) Impact and probability levels
A) Compliance and assurance capabilities
B) Information security focus areas
C) Information flows including security policy

Isaca COBIT-Design-and-Implementation Exam - Topic 4 Question 41 Discussion

Actual exam question for Isaca's COBIT-Design-and-Implementation exam
Question #: 41
Topic #: 4
[All COBIT-Design-and-Implementation Questions]

Which of the following components should be considered for inclusion when considering the threat landscape design factor?

Show Suggested Answer Hide Answer
Suggested Answer: D

When considering the threat landscape design factor, impact and probability levels should be considered for inclusion. These levels help in assessing the potential consequences and likelihood of various threats, which is essential for effective risk management and governance.

In the COBIT 2019 framework, the threat landscape design factor involves understanding and evaluating the risks that an enterprise may face. Impact and probability levels are critical components of this evaluation as they provide a basis for prioritizing threats and developing appropriate responses.

COBIT 2019 Framework Reference:

COBIT 2019 Design Guide, Chapter 2: Discusses the importance of understanding the threat landscape and evaluating threats based on their impact and probability.

COBIT 2019 Framework: Governance and Management Objectives: Emphasizes the need for a thorough risk assessment, which includes analyzing the impact and probability of potential threats.

Including impact and probability levels in the assessment of the threat landscape ensures a comprehensive understanding of risks, enabling the enterprise to prioritize and mitigate threats effectively.


Contribute your Thoughts:

0/2000 characters
Alpha
1 day ago
Surprised C isn't a given in this discussion!
upvoted 0 times
...
Dana
6 days ago
Totally agree with A and D, they’re key factors.
upvoted 0 times
...
Karma
11 days ago
Wait, are we really considering D? Seems too vague.
upvoted 0 times
...
Jeanice
17 days ago
I think C is crucial too!
upvoted 0 times
...
Bobbie
22 days ago
Definitely A and B should be included.
upvoted 0 times
...
Shaun
27 days ago
Impact and probability levels were definitely mentioned in our readings, and I think they play a crucial role in assessing threats, so option D might be the right choice.
upvoted 0 times
...
Antonio
1 month ago
I'm a bit confused about whether information flows including security policy really fit into the threat landscape design factor. It seems relevant, but I can't recall specifics.
upvoted 0 times
...
Pamella
1 month ago
I remember a practice question that emphasized the importance of information security focus areas, so I feel like option B could be a strong contender.
upvoted 0 times
...
Margot
1 month ago
I think we discussed something about compliance and assurance capabilities in class, but I'm not entirely sure if that's the main focus for the threat landscape.
upvoted 0 times
...

Save Cancel