
Dell NIST Cybersecurity Framework v2.0
Domain 2Objective 3
Define the Organizational Context and Risk Management Strategy. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 4)
Part of the NIST Framework: GOVERN Function domain, which accounts for 18% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
27questions here
6free pages
6concepts
18%of the exam
Questions 16–20
- 16
Which of the following best reflects stakeholder expectations in the context of cybersecurity risk management?
Select an answer first - 17
A financial services firm has established a risk appetite that allows for 'moderate' risk in new product development but 'low' risk in customer data handling. The firm is about to launch a new mobile app that collects customer financial data. Which action best applies the risk appetite to guide risk management decisions?
Select an answer first - 18
A retail chain is defining its risk management strategy and wants to incorporate supply chain risk management. The chain relies on a single supplier for its point-of-sale (POS) software. Which action best incorporates supply chain risk into the risk management strategy?
Select an answer first - 19
A university's risk management strategy is to 'enable research while protecting sensitive data.' The university is aligning its strategy with the NIST GOVERN function. Which action best demonstrates this alignment?
Select an answer first - 20
Why must an organization identify applicable legal, regulatory, and contractual requirements as part of the GOVERN function?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.