Threat & Vulnerability Assessment Flashcards
7 cards from real CSI practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Threat & Vulnerability Assessment flashcards as text
Which of the following is an example of a 'dynamic threat' as opposed to a 'static threat'?
Answer: An organized crime group that adapts its tactics over time
An organized crime group that changes its tactics represents a dynamic threat because the threat actor adapts, making static defenses less effective over time.
During a vulnerability assessment, an investigator should assess 'single points of failure' because they:
Answer: Represent locations where one failure can disable an entire security system
Single points of failure are critical weaknesses where one failure or compromise can bring down an entire security function or system.
Which threat assessment model categorizes threats by intent, capability, and opportunity?
Answer: The threat triad
The threat triad evaluates threats by examining whether an actor has the intent, capability, and opportunity to carry out an attack.
A security investigator is tasked with assessing vulnerabilities at a corporate headquarters. Reviewing badge access logs for anomalies would PRIMARILY address which type of vulnerability?
Answer: Physical access control gaps
Analyzing badge access logs helps identify unauthorized or anomalous physical access patterns, directly addressing physical access control vulnerabilities.
What is the purpose of conducting a 'red team' exercise during a security vulnerability assessment?
Answer: To simulate adversarial attacks and test actual defenses
A red team exercise simulates real-world adversarial attacks to test how effectively existing security measures can detect and resist threats.
Which of the following is MOST characteristic of a 'motivated' threat actor?
Answer: They have a clear reason or goal driving their actions against a target
Motivation is the driving force behind a threat actor's actions; a motivated actor has a clear reason—financial gain, ideology, revenge—for targeting a specific asset.
In a vulnerability assessment, 'consequence analysis' is performed to:
Answer: Determine the potential impact if a specific vulnerability is exploited
Consequence analysis evaluates the potential impact—financial, operational, reputational, or human—that would result if a specific vulnerability were successfully exploited.