The PRIMARY purpose for conducting cybersecurity risk assessments is to:
A.
Assist in security reporting to senior management
B.
Provide metrics to indicate cybersecurity program effectiveness
C.
Verify compliance across multiple sectors
D.
Understand the organization's current security posture
The Answer Is:
D
This question includes an explanation.
Explanation:
The main goal of a cybersecurity risk assessment is to gain visibility into the organization’s current security posture, identify vulnerabilities, evaluate threats, and understand the potential impact of various risks.
“Risk assessments provide an understanding of the organization’s threat landscape, asset vulnerabilities, and residual risk exposure.”