Exam Cybersecurity-Architecture-and-Engineering Topic 1 Question 86 Discussion

Actual exam question for WGU's Cybersecurity-Architecture-and-Engineering exam
Question #: 86
Topic #: 1
The cybersecurity analyst at a hardware company conducted a vulnerability assessment to identify potential security risks to the organization and discovered multiple vulnerabilities on the company's webpage. The analyst then provided the results to the Chief Information Security Officer (CISO), who then decided to decommission the website and create a new page with increased security controls.

Suggested Answer: C Vote an answer

Risk avoidanceinvolves eliminating the source of risk altogether. In this case, the organization chose todecommission the vulnerable systeminstead of patching or compensating - a clear example of avoiding risk.
NIST SP 800-30 Rev. 1 (Risk Assessment Guide):
"Risk avoidance involves not performing the action that gives rise to the risk or eliminating the risk cause or consequence." This strategy is ideal when the cost or complexity of mitigation is too high or when risk to the business is unacceptable.
#WGU Course Alignment:
Domain:Security Models and Design
Topic:Understand and apply risk response strategies (avoid, accept, transfer, mitigate)

by Rachel at Jul 06, 2026, 01:21 PM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10