
EC-CouncilCloud Security Essentials
Domain 7Objective 4
Quantitative vs. Qualitative Risk Assessment CSE Practice Questions (Page 4)
Part of the Cloud Security Risk Assessment and Management domain, which makes up ~13% of our current practice bank.
43questions here
9free pages
11concepts
Questions 16–20
- 16
Which statement best describes a quantitative risk assessment?
Select an answer first - 17
A large enterprise is assessing risks for its multi-cloud environment. The risk team has reliable financial data for some assets but not for others. Management wants both a prioritized list of risks and monetary impact estimates for budget planning. Which approach best satisfies these requirements?
Select an answer first - 18
A risk manager is leading a quantitative risk assessment for a cloud-based ERP system. The team has spent several weeks collecting asset values and calculating SLE and ALE for each threat. The manager is now concerned that the assessment is taking too long and consuming too many resources. What is the most effective way to address this concern while maintaining the benefits of quantitative assessment?
Select an answer first - 19
Which quantitative technique is used to estimate the expected annual loss from a risk?
Select an answer first - 20
A risk analyst is performing a quantitative risk assessment for a cloud storage service. The analyst has completed asset valuation and threat identification. What should the analyst do next in the process?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.