CompTIA Security+ Exam Prep

Category - Management

Which method(s) of risk analysis have both pros and cons attached?
  1. Quantitative
  2. Qualitative
  3. Stringent
  4. A and B
Explanation
Answer: D - The approaches to risk analysis that have both pros and cons attached are quantitative and qualitative. Quantitative risk analysis attempts to assign real and meaningful numbers to all elements of the risk analysis process. These elements may include safeguard costs, asset value, business impact, frequency, safeguard effectiveness, and exploit possibilities. A major advantage to this method is that it applies actual numbers to elements of risk, while the major con is that it fails to quantify qualitative items that produce uncertainties in qualitative values.

Qualitative risk analysis does not assign numbers and monetary values. Instead, this method focuses on potential scenarios and ranking of threats and the possible countermeasures, based on opinions. The pro to this method is that it provides scenarios that may possibly be encountered, while the con is that there is not monetary value on elements.
Was this helpful? Upvote!
Login to contribute your own answer or details

Top questions

Related questions

Most popular on PracticeQuiz