2 Fundamentals of Security: Gap Analysis Flashcards

1
Q

Process of evaluating the differences between an organization’s current performance and its desired performance

A

Gap Analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Conducting a gap analysis can be a valuable tool for organizations looking to improve
their operations, processes, performance, or overall security posture True or False

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Steps in Gap Analysis

A

Define Scope of analysis
Gather Data on the current state of the organiztion
Analyze the data to identify any areas where the organizations current performacne falls short of its desired performance
develop a plan to bridge the gap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Two types of gap analysis are?

A

Technical
Business

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Involves evaluating an organization’s current technical infrastructure
identifying any areas where it falls short of the technical capabilities
required to fully utilize their security solutions

A

Technical

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Involves evaluating an organization’s current business processes
● Identifying any areas where they fall short of the capabilities required to
fully utilize cloud-based solutions

A

business gap analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

● Outlines the specific measures to address each vulnerability
● Allocate resources
● Set up timelines for each remediation task that is needed

A

POA&M Plan of Action and Milestones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly