Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 20 Topic 3 Discussion

Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 20 Topic 3 Discussion

CMMC-CCA Exam Topic 3 Question 20 Discussion:
Question #: 20
Topic #: 3

A CMMC Assessment Team is evaluating an OSC’s implementation of RA.L2-3.11.1 – Risk Assessments. Upon examining the OSC’s Risk Assessment policy, the team learns that the OSC has specified frequencies for assessing risks to organizational operations, assets, and personnel. The results and reviews of risk assessments indicated that assessments are conducted at these defined frequencies. For the OSC’s risk assessment to be accurate, it must consider all of the following except which factor?


A.

Threats to organizational assets, operations, and personnel that arise from the operation and use of organizational systems


B.

Risk likelihood and impact on organizational assets, personnel, and operations


C.

Risk from external parties


D.

Whether risk can be transferred to a third party


Get Premium CMMC-CCA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.