Which term is a strategy that seeks to minimize the risk to an acceptable level which an organization can accept?

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

Which term is a strategy that seeks to minimize the risk to an acceptable level which an organization can accept?

Mitigation means reducing the chances or impact of a threat so that the resulting risk sits at an acceptable level the organization can tolerate. It’s about putting security controls in place to lower risk to a tolerable residual level, rather than trying to eliminate it entirely or shifting it to someone else. This fits the scenario where the goal is to bring risk down to what the organization can accept. By contrast, avoidance would mean not taking the activity at all, transference would move the risk to another party (like insurance), and risk management is the broader process that includes identifying and choosing among various responses, not the specific action of reducing risk.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy