CIAC CIAC Threat Assessment & Risk Analysis 2 — Questions and Answers
Question 1: Which step comes FIRST in a structured threat assessment process?
- Recommend countermeasures
- Identify assets and their value (Correct answer)
- Assign risk ratings
- Disseminate the threat report
Correct answer: Identify assets and their value
Identifying assets and their value is the foundational first step before threats, vulnerabilities, or risks can be evaluated.
Question 2: The 'likelihood' component in a risk formula most commonly represents:
- The dollar cost of an incident
- The probability that a specific threat will successfully exploit a vulnerability (Correct answer)
- The number of threat actors in a region
- The legal severity of the offense
Correct answer: The probability that a specific threat will successfully exploit a vulnerability
Likelihood quantifies the probability that a specific threat event will actually occur given existing vulnerabilities.
Question 3: In threat assessment, 'consequence' is best described as:
- The legal penalty assigned to an offender
- The negative impact resulting from a successful threat exploitation (Correct answer)
- The investigative steps taken after an incident
- The response time of law enforcement
Correct answer: The negative impact resulting from a successful threat exploitation
Consequence measures the negative outcomes—physical, economic, or societal—that would result if a threat were successfully carried out.
Question 4: What is the purpose of a 'criticality assessment' in law enforcement threat analysis?
- To determine the criminal history of a suspect
- To identify and rank assets based on how important they are to operations or safety (Correct answer)
- To evaluate the media impact of a crime incident
- To assess the mental state of a threat actor
Correct answer: To identify and rank assets based on how important they are to operations or safety
A criticality assessment ranks assets by their importance so that protective resources can be allocated where the impact of loss would be greatest.
Question 5: Which of the following best describes an 'all-hazards' approach to threat assessment?
- Focusing exclusively on terrorism-related threats
- Considering a broad range of natural, technological, and human-caused threats simultaneously (Correct answer)
- Analyzing only crimes with physical violence
- Prioritizing cybercrime above all other threats
Correct answer: Considering a broad range of natural, technological, and human-caused threats simultaneously
An all-hazards approach ensures that assessments account for the full spectrum of potential threats, not just one category.
Question 6: How does intelligence-led policing (ILP) differ from traditional reactive policing in the context of threat assessment?
- ILP relies solely on witness testimony rather than data
- ILP uses predictive intelligence to proactively identify and address threats before they materialize (Correct answer)
- ILP focuses only on post-incident forensic analysis
- ILP replaces field officers with automated surveillance systems
Correct answer: ILP uses predictive intelligence to proactively identify and address threats before they materialize
Intelligence-led policing leverages analyzed intelligence to anticipate threats and allocate resources proactively rather than responding after the fact.
Which step comes FIRST in a structured threat assessment process?