EMC NIST Cybersecurity Framework 2023 Sample Questions:
1. What three steps are required to complete a Business Impact Analysis?
A) Identify the extent of the breach
Construct an effective incident response plan
Implement a recovery plan
B) Determine mission / business processes and recovery criticality
Identify resource requirements
Identify recovery priorities for system resources
C) Create asset inventory of existing systems
Establish an initial baseline
Communicate requirements to appropriate parties
D) Aggregate and correlate data from multiple sources and sensors
Establish incident alert thresholds
Communicate event detection to appropriate parties
2. What is a valid order of steps from the Incident Response Lifecycle?
A) Preparation
Eradication
Containment
Analysis
Recovery
B) Preparation
Detection
Containment
Eradication
Recovery
C) Containment
Detection
Analysis
Eradication
Prevention
D) Containment
Analysis
Detection
Eradication
Communication
3. The CSIRT discovers that an attacker changed some non-encrypted values on a database, causing an e-commerce application to show incorrect prices.
Which part(s) of the CIA Triad was affected on the database?
A) C, I
B) A, I
C) A only
D) C, A
4. What is the main goal of a gap analysis in the Identify function?
A) Identify gaps between Cybersecurity Framework and Cyber Resilient Lifecycle pertaining to that function
B) Determine actions required to get from the current profile state to the target profile state
C) Determine security controls to improve security measures
D) Identify business process gaps to improve business efficiency
5. What constitutes the main objectives of the Recovery function?
A) Restore services, mitigate risks, and improve
B) Restore workloads, assets, and audit logs
C) Restore assets, workloads, and services
D) Restore backups, analyze threats, and monitor backup integrity
Solutions:
| Question # 1 Answer: B | Question # 2 Answer: B | Question # 3 Answer: B | Question # 4 Answer: B | Question # 5 Answer: C |
We're so confident of our products that we provide no hassle product exchange.


By Elvis

