4.Question 4Which of the following are threat modeling frameworks? Select two answers.1 pointXSSTrikePASTANIST
Question
4.Question 4Which of the following are threat modeling frameworks? Select two answers.1 pointXSSTrikePASTANIST
Solution
The correct answers are:
- PASTA
- NIST
These are both recognized threat modeling frameworks. PASTA (Process for Attack Simulation and Threat Analysis) is a risk-centric threat modeling framework. NIST (National Institute of Standards and Technology) provides a variety of cybersecurity frameworks and guidelines, including for threat modeling.
Similar Questions
2.Question 2Which of the following are steps of a threat modeling process? Select three answers.1 pointClassify assets.Mitigate risks.Characterize the environment.Identify threats.
Which of the following is a step of the threat modeling process? Select two answers.Implement prepared statementsRemediate vulnerabilitiesIdentify threatsEvaluate findings
What are some key benefits of the threat modeling process? Select all that apply.1 pointHelp prioritize threatsReduce an attack surfaceIdentify points of failureRemediate all vulnerabilities
Question 2Which of the following are core components of security frameworks? Select two answers.1 point Identifying and documenting security goalsManaging data requestsMonitoring and communicating resultsMonitoring personally identifiable information
9.Question 9A security team is conducting a threat model on a new software system. The team is creating their plan for defending against threats. Their choices are to avoid risk, transfer it, reduce it, or accept it.Which key step of a threat model does this scenario represent?1 pointEvaluate findingsMitigate risksAnalyze threatsDefine the scope
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.