Exam ZDTA Topic 4 Question 73 Discussion
Actual exam question for Zscaler's ZDTA exam
Question #: 73
Topic #: 4
Question #: 73
Topic #: 4
An executive summary correlates Risk360 category-contribution views with audit commitments: identity risk has decreased, but data-loss risk is trending upward; business-unit mean time to remediate (MTTR) variance suggests uneven remediation; and leadership requests board-ready evidence of continuous improvement mapped to the NIST Cybersecurity Framework (CSF).
What is the appropriate next step based on this summary and goal?
What is the appropriate next step based on this summary and goal?
Suggested Answer: D Vote an answer
Option D converts the observed risk differences into measurable governance. Zscaler describes Risk360 as an interactive, data-driven framework with risk drivers, tracked scores, remediation insights, and board-ready reporting. Its reports include presentation-ready material for executive communication, and its compliance assessment capability supports mapping risk evidence to recognized frameworks. A dashboard should therefore retain category trends, show MTTR by business unit, map relevant controls and outcomes to NIST CSF, and identify accountable remediation owners. Periodic cross-team reviews can test whether data-loss risk and MTTR variance decline over time. A single-incident narrative does not establish continuous improvement. Ad hoc email weakens ownership and closure evidence, while delaying reports hides the current baseline. Framework-aligned trend reporting provides repeatable evidence for leadership and auditors while focusing remediation on the weakest category and teams.
by Toby at Aug 26, 2026, 12:55 AM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).