• Post author:
  • Post category:Blog
  • Reading time:2 mins read
  • Post last modified:June 12, 2024

Which four VERIS components are used to describe an incident? (Choose four.)

  • authorization
  • actions
  • authentication
  • attributes
  • assets
  • accounting
  • access control list
  • actors
  • alarm
  • adjacency
Explanation & Hint:

The VERIS (Vocabulary for Event Recording and Incident Sharing) framework uses several components to describe a security incident. Among the options provided, the four VERIS components used to describe an incident are:

  1. Actions: This component describes the methods used in the incident, such as hacking, malware, social engineering, etc.
  2. Attributes: This refers to the properties of the incident that were affected, like confidentiality, integrity, or availability.
  3. Assets: This component details the types of assets involved or affected in the incident, such as servers, user devices, data, etc.
  4. Actors: This describes who is behind the incident, categorizing them as external, internal, partner, etc., and can include their motives and level of authorization.

VERIS provides a comprehensive and structured approach to describe security incidents, ensuring consistent and useful data for analysis and benchmarking.

For more Questions and Answers:

Threat Response Post-Assessment | CBROPS

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments