71.5k views
3 votes
Ben is preparing to conduct a cybersecurity risk assessment for his organization. If he chooses to follow the standard process proposed by NIST, which of the following steps would come first?

A. Determine Likelihood
B. Determine Impact
C. Identify Threats
D. Identify Vulnerabilities

User Kheengz
by
8.3k points

1 Answer

2 votes

Final answer:

The first step in the standard process proposed by NIST for conducting a cybersecurity risk assessment is to identify threats.

Step-by-step explanation:

If Ben chooses to follow the standard process proposed by NIST for conducting a cybersecurity risk assessment, the first step would be to Identify Threats. This involves analyzing and identifying potential threats that could exploit vulnerabilities in the organization's network. Once the threats are identified, Ben can then proceed to the next steps of the risk assessment process, which include determining the impact and likelihood of each threat, and identifying vulnerabilities.

User Sungjin
by
7.5k points