Study. uk . com
  1. Home
  2. All questions
  3. Question 688

CISM study material · question 688 of 1000

Which three properties does NIST require of meaningful security measures?

  1. Automated, real-time and centrally stored
  2. Benchmarked, certified and externally validated
  3. Quantitative, monetised and audited
  4. Obtainable, repeatable and feasible to measure, while reflecting the organisation's security goals
Show the answer

Answer: D. Obtainable, repeatable and feasible to measure, while reflecting the organisation's security goals

SP 800-55v1 asks a measure to be gettable, repeatable and practical to take, all while keeping the organisation's security goals and objectives in view.

Source: NIST SP 800-55 Vol. 1 (NIST) — Sec. 2.3 Benefits of Using Measures

Challenge yourself on this topic → Study as cards