Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Cybersecurity Operations Analyst

Domain 2Objective 2

Risk Management CCOA Practice Questions (Page 6)

Part of the Domain 2: Cybersecurity Principles and Risk domain, which accounts for 20% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~19–32 in this domain), expect 5–8 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)

28questions here
6free pages
5concepts
20%of the exam

Questions 26–28

  1. 26expert · medium

    A security analyst is explaining the relationship between risk, threat, and vulnerability to a manager. The analyst says, 'The risk of a ransomware attack is high because the threat actors are sophisticated and the vulnerability in our email system is unpatched.' Which of the following statements best describes the relationship in this context?

    Select an answer first
  2. 27application · medium

    A risk analyst is using a qualitative risk assessment to evaluate risks for a new project. The analyst rates the likelihood of a cyber attack as 'high' and the impact as 'moderate'. According to a standard risk matrix, this combination results in a 'high' risk level. What does this 'high' risk level indicate?

    Select an answer first
  3. 28foundation · easy

    In risk analysis, what is the term for a potential event that could cause harm to an organization's assets?

    Select an answer first
Finished these 3 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CCOA

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.