ExamQuestions.com

Register
Login
Certified Authorization Professional (CAP) Exam Questions

ISC

Certified Authorization Professional (CAP)

166 / 230

Question 166:

Which of the following relations correctly describes residual risk? 

Answer options:

A. Residual Risk = Threats x Vulnerability x Asset Gap x Control Gap
B. Residual Risk = Threats x Exploit x Asset Value x Control Gap
C. Residual Risk = Threats x Exploit x Asset Value x Control Gap
D. Residual Risk = Threats x Vulnerability x Asset Value x Control Gap