CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 401–450 of 5,000 matching questions

50 per page
0401
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During an authorized retail-company assessment (RET-LAB-M01-401), which statement most accurately defines "incident response"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
0402
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-402), which statement most accurately defines "incident response"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
0403
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-403), which statement most accurately defines "incident response"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
0404
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a financial-services purple-team test (FIN-PT-M01-404), which statement most accurately defines "incident response"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
0405
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-405), which statement most accurately defines "incident response"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
0406
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a government risk-validation project (GOV-RISK-M01-406), which statement most accurately defines "incident response"?

View answer choices
  1. Governed identification, testing, deployment, and verification of software updates.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
0407
Module 1 · Applied Domain 3 · Security incident response Unanswered

During an e-commerce application review (ECOM-WEB-M01-407), which statement most accurately defines "incident response"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
0408
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a manufacturing and OT security review (MFG-OT-M01-408), which statement most accurately defines "incident response"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
0409
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a mobile-services penetration test (MOB-TEST-M01-409), which statement most accurately defines "incident response"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
0410
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-410), which statement most accurately defines "incident response"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
0411
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During an authorized retail-company assessment (RET-LAB-M01-411), which risk is most directly associated with "incident response"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
0412
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-412), which risk is most directly associated with "incident response"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Delayed or failed patches leave known vulnerabilities exploitable.
Practice
0413
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-413), which risk is most directly associated with "incident response"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
0414
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a financial-services purple-team test (FIN-PT-M01-414), which risk is most directly associated with "incident response"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
0415
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-415), which risk is most directly associated with "incident response"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
0416
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a government risk-validation project (GOV-RISK-M01-416), which risk is most directly associated with "incident response"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Delayed or failed patches leave known vulnerabilities exploitable.
Practice
0417
Module 1 · Applied Domain 3 · Security incident response Unanswered

During an e-commerce application review (ECOM-WEB-M01-417), which risk is most directly associated with "incident response"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Delayed or failed patches leave known vulnerabilities exploitable.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
0418
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a manufacturing and OT security review (MFG-OT-M01-418), which risk is most directly associated with "incident response"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
0419
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a mobile-services penetration test (MOB-TEST-M01-419), which risk is most directly associated with "incident response"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
0420
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-420), which risk is most directly associated with "incident response"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Delayed or failed patches leave known vulnerabilities exploitable.
Practice
0421
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During an authorized retail-company assessment (RET-LAB-M01-421), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
0422
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-422), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
0423
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-423), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
0424
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a financial-services purple-team test (FIN-PT-M01-424), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Prioritize actively exploited exposure and verify that remediation actually reached assets.
Practice
0425
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-425), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
0426
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a government risk-validation project (GOV-RISK-M01-426), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
0427
Module 1 · Applied Domain 3 · Security incident response Unanswered

During an e-commerce application review (ECOM-WEB-M01-427), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
0428
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a manufacturing and OT security review (MFG-OT-M01-428), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Prioritize actively exploited exposure and verify that remediation actually reached assets.
Practice
0429
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a mobile-services penetration test (MOB-TEST-M01-429), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
0430
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-430), which action most directly controls the risk related to "incident response"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
0431
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During an authorized retail-company assessment (RET-LAB-M01-431), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
0432
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-432), which evidence best supports an assessment of "incident response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
0433
Module 1 · Foundation Domain 3 · Security incident response Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-433), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. Patch inventory correlated with vulnerability rescans and exception approvals.
Practice
0434
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a financial-services purple-team test (FIN-PT-M01-434), which evidence best supports an assessment of "incident response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. Patch inventory correlated with vulnerability rescans and exception approvals.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
0435
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-435), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
0436
Module 1 · Applied Domain 3 · Security incident response Unanswered

During a government risk-validation project (GOV-RISK-M01-436), which evidence best supports an assessment of "incident response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
0437
Module 1 · Applied Domain 3 · Security incident response Unanswered

During an e-commerce application review (ECOM-WEB-M01-437), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. Patch inventory correlated with vulnerability rescans and exception approvals.
Practice
0438
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a manufacturing and OT security review (MFG-OT-M01-438), which evidence best supports an assessment of "incident response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
0439
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a mobile-services penetration test (MOB-TEST-M01-439), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
0440
Module 1 · Advanced Domain 3 · Security incident response Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-440), which evidence best supports an assessment of "incident response"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. Patch inventory correlated with vulnerability rescans and exception approvals.
Practice
0441
Module 1 · Foundation Domain 3 · Security risk assessment Unanswered

During an authorized retail-company assessment (RET-LAB-M01-441), which statement most accurately defines "risk assessment"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
0442
Module 1 · Foundation Domain 3 · Security risk assessment Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-442), which statement most accurately defines "risk assessment"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
0443
Module 1 · Foundation Domain 3 · Security risk assessment Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-443), which statement most accurately defines "risk assessment"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
0444
Module 1 · Applied Domain 3 · Security risk assessment Unanswered

During a financial-services purple-team test (FIN-PT-M01-444), which statement most accurately defines "risk assessment"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
0445
Module 1 · Applied Domain 3 · Security risk assessment Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-445), which statement most accurately defines "risk assessment"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
0446
Module 1 · Applied Domain 3 · Security risk assessment Unanswered

During a government risk-validation project (GOV-RISK-M01-446), which statement most accurately defines "risk assessment"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
0447
Module 1 · Applied Domain 3 · Security risk assessment Unanswered

During an e-commerce application review (ECOM-WEB-M01-447), which statement most accurately defines "risk assessment"?

View answer choices
  1. Governed identification, testing, deployment, and verification of software updates.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
0448
Module 1 · Advanced Domain 3 · Security risk assessment Unanswered

During a manufacturing and OT security review (MFG-OT-M01-448), which statement most accurately defines "risk assessment"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
0449
Module 1 · Advanced Domain 3 · Security risk assessment Unanswered

During a mobile-services penetration test (MOB-TEST-M01-449), which statement most accurately defines "risk assessment"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
0450
Module 1 · Advanced Domain 3 · Security risk assessment Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-450), which statement most accurately defines "risk assessment"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice