CCSP Security Threats & Risk Management 3 — Questions and Answers
Question 1: Which concept describes an adversary's capability, intent, and opportunity to carry out an attack?
- Threat vector
- Threat assessment triad (Correct answer)
- Risk appetite
- Consequence matrix
Correct answer: Threat assessment triad
A complete threat assessment evaluates three elements together: whether an adversary has the capability, the intent, and the opportunity to conduct an attack.
Question 2: Which screening method is BEST suited for detecting low-density explosive materials concealed in cargo?
- Physical examination only
- Explosive Trace Detection (ETD) (Correct answer)
- Manifest review
- Weight and balance check
Correct answer: Explosive Trace Detection (ETD)
ETD samples chemical residue and can detect trace quantities of explosive compounds that may be invisible to physical inspection or X-ray imaging.
Question 3: A facility's security plan is reviewed and found to have no contingency for a cyberattack on its screening equipment software. This gap represents what type of risk?
- Accepted risk
- Residual risk
- Unaddressed vulnerability creating systemic risk (Correct answer)
- Transferred risk
Correct answer: Unaddressed vulnerability creating systemic risk
A missing contingency for a known threat scenario is an unaddressed vulnerability that creates systemic operational risk across the facility.
Question 4: In a layered security model for cargo screening, what is the purpose of redundancy?
- To reduce staffing costs by automating all checks
- To ensure that if one security layer fails, another layer still detects the threat (Correct answer)
- To comply with insurance requirements only
- To create documentation for regulatory audits
Correct answer: To ensure that if one security layer fails, another layer still detects the threat
Redundancy ensures that no single point of failure can allow a threat to pass undetected by providing backup detection layers.
Question 5: Which of the following is an example of a passive security measure in a cargo screening facility?
- Guards conducting random searches
- Perimeter fencing and access control barriers (Correct answer)
- Explosive detection canine teams
- Operator review of X-ray images
Correct answer: Perimeter fencing and access control barriers
Perimeter fencing and barriers are passive measures because they deter and delay threats without requiring active human intervention.
Question 6: What does 'threat credibility' refer to in a CCSP risk assessment?
- The legal standing of the threat source in court
- The degree to which intelligence or evidence supports that a specific threat is real and actionable (Correct answer)
- The financial value of cargo targeted by a threat
- The amount of time available to respond to a threat
Correct answer: The degree to which intelligence or evidence supports that a specific threat is real and actionable
Threat credibility measures how well-supported by intelligence or evidence a specific threat is, helping prioritize response resources.
Question 7: A cargo security manager decides to accept a low-probability, low-impact risk rather than invest in expensive countermeasures. This decision reflects which risk management strategy?
- Risk avoidance
- Risk transfer
- Risk acceptance (Correct answer)
- Risk elimination
Correct answer: Risk acceptance
Risk acceptance is a deliberate decision to tolerate a risk because its likelihood and impact are low enough that countermeasure costs outweigh the benefit.
Which concept describes an adversary's capability, intent, and opportunity to carry out an attack?