
Dell NIST Cybersecurity Framework v2.0
Domain 2Objective 6
Identify and Manage Cybersecurity Risks Associated with Suppliers and Third-Party Vendors. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 4)
Part of the NIST Framework: GOVERN Function domain, which accounts for 18% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.
30questions here
6free pages
5concepts
18%of the exam
Questions 16–20
- 16
What is the primary goal of a third-party risk assessment in the NIST CSF 2.0 GOVERN function?
Select an answer first - 17
A hospital relies on a medical device vendor for critical patient monitoring equipment. The vendor's software has a known vulnerability that could allow remote exploitation. The vendor has not yet released a patch. The hospital's risk team must decide how to respond while ensuring patient safety and operational continuity. What is the best approach?
Select an answer first - 18
Which of the following is an example of a third-party risk assessment activity?
Select an answer first - 19
In the NIST Cybersecurity Framework 2.0 GOVERN function, what is the primary purpose of supplier risk identification?
Select an answer first - 20
Which activity is most directly associated with supplier risk identification in the NIST CSF 2.0 GOVERN function?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.