QUESTIONS WITH SOLUTIONS VERIFIED
ANSWERS
●● Risk Management Framework (RMF).
Answer: A structured process that integrates security and risk
management activities into the system development life cycle.
●● Threat Modeling.
Answer: A process used to identify, assess, and prioritize potential
threats to a system.
●● Vulnerability Assessment.
Answer: The systematic examination of an information system to
determine its security weaknesses.
●● Incident Response.
Answer: The approach taken to prepare for, detect, contain, and recover
from a security incident.
●● Defense in Depth.
Answer: A security strategy that employs multiple layers of defense to
protect information and resources.