
Dell NIST Cybersecurity Framework v2.0
Domain 8Objective 2
Explore Different Organizational Profiles. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 4)
Part of the Analyze NIST CSF Profiles domain, which accounts for 7% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
22questions here
5free pages
5concepts
7%of the exam
Questions 16–20
- 16
A large hospital system has completed its Current and Target Profiles. The gap analysis shows that the system is strong in 'Protect' but weak in 'Recover' and 'Respond'. The board is concerned about the recent ransomware attacks in the healthcare sector and wants to know how the profile addresses this threat. The CISO must present the findings. What is the most effective way to communicate the profile results to the board in this context?
Select an answer first - 17
How do Organizational Profiles help prioritize cybersecurity improvements?
Select an answer first - 18
In the NIST Cybersecurity Framework 2.0, what is the primary purpose of an Organizational Profile?
Select an answer first - 19
A multinational corporation has completed its Current and Target Profiles. The gap analysis reveals that the largest gaps are in the 'Protect' Function (PR.AA and PR.DS), but the 'Govern' Function (GV.OC) also has significant gaps. The corporation's risk committee has mandated that all gaps be closed within 18 months, but the budget is only sufficient to close approximately half of the identified gaps. The CISO must decide how to proceed. Which approach best balances the mandate and the budget constraint?
Select an answer first - 20
What is the primary role of a Target Profile in the NIST CSF 2.0?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.