ISC2 CISSP Practice Question

A global enterprise is formalizing its risk assessment methodology to support periodic reporting to the board. The CISO wants the process to yield repeatable, objective figures-such as predictable dollar values-that allow risks in one division to be compared directly with those in another and to observe trends over successive quarters. Which risk-assessment approach BEST delivers these capabilities?

  • Qualitative risk assessment

  • Residual risk assessment

  • Hybrid risk assessment

  • Quantitative risk assessment

ISC2 CISSP
Security and Risk Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot