Free DES-9131 Exam Braindumps (page: 4)

Page 3 of 16

Which mechanism within the NIST Cybersecurity Framework describes a method to capture the current state and define the target state for understanding gaps, exposure, and prioritize changes to mitigate risk?

  1. Functions
  2. Profiles
  3. Tiers
  4. Categories

Answer(s): C



The CSF recommends that the Communication Plan for an IRP include audience, method of communication, frequency, and what other element?

  1. Incident category
  2. Message criteria
  3. Incident severity
  4. Templates to use

Answer(s): B


Reference:

https://www.utc.edu/information-technology/pdfs/it-comm-plan-master-2017.pdf (p.4)



What is the main goal of a gap analysis in the Identify function?

  1. Determine security controls to improve security measures
  2. Determine actions required to get from the current profile state to the target profile state
  3. Identify gaps between Cybersecurity Framework and Cyber Resilient Lifecycle pertaining to that function
  4. Identify business process gaps to improve business efficiency

Answer(s): B



DRAG DROP
Rank order the relative severity of impact to an organization of each plan, where “1” signifies the most impact and “4” signifies the least impact.

Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:






Post your Comments and Discuss EMC DES-9131 exam with other Community members:

DES-9131 Discussions & Posts