Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 ISSMP Exam - Topic 1 Question 66 Discussion

Which of the following statements is related with the first law of OPSEC?
A) If you are not protecting it (the critical and sensitive information), the adversary wins!
B) If you don't know what to protect, how do you know you are protecting it?
C) If you don't know about your security resources you could not protect your network.
D) If you don't know the threat, how do you know what to protect?

ISC2 ISSMP Exam - Topic 1 Question 66 Discussion

Actual exam question for ISC2's ISSMP exam
Question #: 66
Topic #: 1
[All ISSMP Questions]

Which of the following statements is related with the first law of OPSEC?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Francine
8 months ago
Wait, are we really saying A is the first law? That’s surprising!
upvoted 0 times
...
Deangelo
8 months ago
D is a bit confusing. What if you know the threats but not the info?
upvoted 0 times
...
Luis
9 months ago
C is spot on! You need to know your resources first.
upvoted 0 times
...
Marya
9 months ago
I think B makes more sense. How can you protect what you don’t know?
upvoted 0 times
...
Ellsworth
9 months ago
A is definitely true! Protecting info is key.
upvoted 0 times
...
Carmela
9 months ago
I thought the first law was about identifying critical information, which might relate to option B. But I also see how option D fits in. It's confusing!
upvoted 0 times
...
Kris
9 months ago
I feel like option A sounds familiar too, like it captures the essence of OPSEC. But I can't recall if it's the first law specifically.
upvoted 0 times
...
Polly
9 months ago
I remember a practice question that emphasized the importance of understanding threats. That makes me lean towards option D, but I could be wrong.
upvoted 0 times
...
Yasuko
9 months ago
I think the first law of OPSEC is about knowing what to protect, so maybe it's option B? But I'm not entirely sure.
upvoted 0 times
...
Harris
9 months ago
I'm a bit confused by this question. I'm not sure how the different options relate to handling multiple consumers for a single producer. I'll have to review my notes on message queuing and distributed systems to figure this one out.
upvoted 0 times
...
Flo
9 months ago
I'm leaning towards the digital voice recorder and LMS as the best options. The recorder captures the audio, and the LMS can be used to share the recording and any other materials with the students.
upvoted 0 times
...
Beata
10 months ago
I'm a bit confused by all the details in the scenario. There's a lot of information to take in. I'll need to carefully read through the question and options to make sure I understand what's being asked.
upvoted 0 times
...
Francisca
10 months ago
I vaguely remember that financial statement fraud tends to be really expensive. Maybe it’s option A?
upvoted 0 times
...
Eugene
1 year ago
I'm going to go with B) because 'if you don't know what to protect, how do you know you're protecting it?' - that's just plain common sense!
upvoted 0 times
...
Deandrea
1 year ago
C) is not quite on point. Security resources are important, but knowing what to protect comes first.
upvoted 0 times
Lili
1 year ago
D) If you don't know the threat, how do you know what to protect?
upvoted 0 times
...
Kimberely
1 year ago
B) If you don't know what to protect, how do you know you are protecting it?
upvoted 0 times
...
Simona
1 year ago
A) If you are not protecting it (the critical and sensitive information), the adversary wins!
upvoted 0 times
...
...
Lindsay
1 year ago
A) is a bit too vague. OPSEC is about more than just protecting information.
upvoted 0 times
...
Jolanda
1 year ago
D) is a close second. You need to understand the threat in order to protect against it.
upvoted 0 times
Evan
1 year ago
D) is a close second. You need to understand the threat in order to protect against it.
upvoted 0 times
...
Micheline
1 year ago
B) If you don't know what to protect, how do you know you are protecting it?
upvoted 0 times
...
Luann
1 year ago
A) If you are not protecting it (the critical and sensitive information), the adversary wins!
upvoted 0 times
...
...
Reed
1 year ago
B) is the correct answer. If you don't know what to protect, how can you effectively implement OPSEC?
upvoted 0 times
Amina
1 year ago
User 3: D) If you don't know the threat, how do you know what to protect?
upvoted 0 times
...
Adelle
1 year ago
User 2: A) If you are not protecting it (the critical and sensitive information), the adversary wins!
upvoted 0 times
...
Nikita
1 year ago
User 1: B) If you don't know what to protect, how do you know you are protecting it?
upvoted 0 times
...
...
Xenia
1 year ago
But if you don't know the threat, how can you know what to protect?
upvoted 0 times
...
Cassi
1 year ago
I disagree, I believe the answer is A.
upvoted 0 times
...
Xenia
1 year ago
I think the answer is D.
upvoted 0 times
...

Save Cancel