Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 Exam ISSEP Topic 3 Question 26 Discussion

Actual exam question for ISC2's Information Systems Security Engineering Professional exam
Question #: 26
Topic #: 3
[All Information Systems Security Engineering Professional Questions]

The phase 3 of the Risk Management Framework (RMF) process is known as mitigation planning.

Which of the following processes take place in phase 3? Each correct answer represents a complete

solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: A, B, D

The phase 3 of Risk Management Framework (RMF) process is known as mitigation planning. The

goal of this phase is to determine which risks will be addressed in the final mitigation strategy by

using the risk statements created in phase 2. The following processes take place in this

phase:

Process 1: Agree on a strategy to mitigate risks.

Process 2: Document and implement mitigation plan.

Process 3: Evaluate mitigation progress and plan next assessment.

Answer option C is incorrect. This process takes place in phase 0.


Contribute your Thoughts:

Currently there are no comments in this discussion, be the first to comment!


Save Cancel