Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CIPS Exam L6M7 Topic 1 Question 3 Discussion

Actual exam question for CIPS's L6M7 exam
Question #: 3
Topic #: 1
[All L6M7 Questions]

Alicia is aware of the dangers of IT hacking and has therefore created a risk assessment to assess how susceptible her business is to this threat. In her risk assessment, she has considered her employees and suppliers. Is this the correct thing to do?

Show Suggested Answer Hide Answer
Suggested Answer: C

While it is important to consider employees and suppliers, cybersecurity risks can exist at various points in the supply chain. Alicia needs to assess potential threats at every stage. A risk assessment alone does not protect against threats (Option B is incorrect), and there is no indication that a third party must complete the assessment (Option D). (P.154)


Contribute your Thoughts:

Lindsey
1 months ago
I'm gonna have to go with C. Alicia can't just focus on her own employees - the suppliers could be the Achilles' heel. Gotta watch out for those shady third-party vendors, am I right?
upvoted 0 times
...
Arleen
1 months ago
D all the way! A third-party assessment would be much more thorough and unbiased. Alicia might be missing something if she does it herself. Plus, it'll make the company look more legit.
upvoted 0 times
...
Nickolas
1 months ago
But shouldn't Alicia also consider risks throughout the supply chain? I think option C is also important.
upvoted 0 times
...
Arminda
1 months ago
I'll go with B. A risk assessment is a great first step to protecting the company, even if it doesn't cover the whole supply chain. Baby steps, you know?
upvoted 0 times
Johna
8 days ago
User 2: Yeah, I agree. It's better to have some protection in place than none at all.
upvoted 0 times
...
Samira
19 days ago
User 1: I think B is the best option. It's important to start somewhere with a risk assessment.
upvoted 0 times
...
Carol
22 days ago
It's important to take steps to protect the company from cyber threats.
upvoted 0 times
...
Shawna
1 months ago
I agree, starting with a risk assessment is a good idea.
upvoted 0 times
...
...
Destiny
1 months ago
I agree with you, Aileen. It's important to assess all potential vulnerabilities to protect the business from cyber threats.
upvoted 0 times
...
Aileen
2 months ago
I think Alicia is doing the right thing by considering her employees and suppliers in the risk assessment.
upvoted 0 times
...
Nadine
2 months ago
Totally agree with C - the supply chain is a critical part of the risk assessment and shouldn't be overlooked. Hackers will target any weak link.
upvoted 0 times
Teri
16 days ago
Agreed, a comprehensive risk assessment should include all potential vulnerabilities, including those in the supply chain.
upvoted 0 times
...
Berry
20 days ago
Absolutely, hackers will target any weak link they can find. Alicia needs to be thorough in her risk assessment.
upvoted 0 times
...
Claudia
1 months ago
I think Alicia should also consider risks throughout the supply chain. It's important to cover all bases.
upvoted 0 times
...
Ryan
1 months ago
Yes, I agree with C too. The supply chain is definitely a weak link that hackers can exploit.
upvoted 0 times
...
...

Save Cancel