🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 9 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

During the early design phase of a new AWS-based e-commerce platform, the security team must analyze how data moves between microservices and pinpoint threats such as spoofing, tampering, repudiation, information disclosure, denial of service, and privilege escalation. Which risk management technique should they apply to best meet this requirement?

  • Calculate Annualized Loss Expectancy (ALE) for each identified asset and threat pair.

  • Populate the corporate risk register with identified risks and assign owners for treatment.

  • Conduct a Business Impact Analysis to estimate financial losses from service outages.

  • Apply the STRIDE threat modeling framework to map potential attacker goals and system vulnerabilities.

ISC2 Systems Security Certified Practitioner (SSCP)
Risk Identification, Monitoring and Analysis
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot