QuestionQ804

Risk Assessment

Which factor is MOST important when determining an organization’s risk exposure related to Internet of Things (IoT) devices?

  • A Defined remediation plans
  • B Management sign-off on the scope
  • C Manual testing of device vulnerabilities
  • D Visibility into all networked devices
Explanation

Complete visibility into all networked devices is foundational to identifying IoT risk exposure because an organization cannot assess, monitor, or protect devices it does not know are present. NIST identifies maintaining a current, accurate inventory of IoT devices as an asset-management risk-mitigation activity.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!