Study. uk . com
  1. Home
  2. All questions
  3. Question 102

CISSP study material · question 102 of 500

An assessor records a single number for the likelihood that ransomware will damage a claims platform. A reviewer says the estimate has skipped a step. Which three-step approach does NIST SP 800-30 expect?

  1. Likelihood from historical data, from expert judgement, then the two reconciled.
  2. Likelihood before controls, after controls, then the difference taken.
  3. Likelihood over one year, over three years, then the two averaged.
  4. Likelihood of initiation, likelihood of resulting harm, then the two combined.
Show the answer

Answer: D. Likelihood of initiation, likelihood of resulting harm, then the two combined.

SP 800-30 assesses how likely the event is to start, how likely it is then to cause adverse impact, and combines the two into an overall likelihood.

Source: NIST SP 800-30 Rev. 1 (NIST) — SP 800-30 Rev. 1 > 2.3.1 Likelihood

Challenge yourself on this topic → Study as cards