Certified Incident Handler (CIH) Practice Ecam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the Certified Incident Handler (CIH) Exam. Enhance your knowledge with interactive quizzes and detailed insights into cyber incident handling. Boost your exam readiness with our expert-designed questions!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


How many primary steps does NIST's risk assessment methodology involve?

  1. Five

  2. Seven

  3. Nine

  4. Eleven

The correct answer is: Nine

The NIST risk assessment methodology consists of a comprehensive framework that incorporates a total of seven primary steps. This methodology allows organizations to identify, evaluate, and prioritize risks to their operations, assets, and individuals resulting from the use of information systems. These seven steps generally include preparing for the assessment, conducting the assessment activities (which include identifying threats, vulnerabilities, and impacts), and then communicating the results effectively. This structured approach helps ensure that all aspects of risk are considered, making the assessment thorough and effective. Understanding the correct number of steps is crucial for anyone involved in incident handling and risk management, as it provides a clear roadmap for conducting effective risk assessments aligned with NIST guidelines.