PrepAway - Latest Free Exam Questions & Answers

Category: CAP (v.1)

Exam CAP: Certified Authorization Professional (update December 11th, 2016)

Which one of the following statements best describes the requirements for the data type used in qualitative ri

You are the project manager of the CUL project in your organization. You and the project
team are assessing the risk events and creating a probability and impact matrix for the
identified risks. Which one of the following statements best describes the requirements for
the data type used in qualitative risk analysis?

what type of risk response?

You are the project manager of a large construction project. Part of the project involves the
wiring of the electricity in the building your project is creating. You and the project team
determine the electrical work is too dangerous to perform yourself so you hire an electrician
to perform the work for the project. This is an example of what type of risk response?

What are the process activities of this phase?

The Phase 1 of DITSCAP C&A is known as Definition Phase. The goal of this phase is to
define the C&A level of effort, identify the main C&A roles and responsibilities, and create
an agreement on the method for implementing the security requirements. What are the
process activities of this phase? Each correct answer represents a complete solution.
Choose all that apply.

What things will you need as inputs for the quantitative risk analysis of the project in this scenario?

You are the project manager of the GGH Project in your company. Your company is
structured as a functional organization and you report to the functional manager that you are
ready to move onto the quantitative risk analysis process. What things will you need as
inputs for the quantitative risk analysis of the project in this scenario?

Where can Mark determine the priority of a risk given its probability and impact?

Mark is the project manager of the BFL project for his organization. He and the project team
are creating a probability and impact matrix using RAG rating. There is some confusion and
disagreement among the project team as to how a certain risk is important and priority for
attention should be managed. Where can Mark determine the priority of a risk given its
probability and impact?


Page 19 of 33« First...10...1718192021...30...Last »