CISSP Practice Question: What would MOST likely happen if a company fails to implement an…
Correct Answer: A. Increased data breaches
Explanation (CISSP Manager Logic):
Asset management is the foundation of security because you cannot protect what you cannot see. Failing to track hardware and software leads to unpatched vulnerabilities and "shadow IT," creating visibility gaps that attackers exploit to gain unauthorized access.
By implementing an effective asset management policy, you:
- Reduce the attack surface by identifying and hardening all network-connected assets.
- Ensure compliance with regulatory requirements for data protection and inventory.
- Enable rapid incident response through accurate configuration and ownership data.
While the other options are relevant, they fall short because:
- B: Resource confusion and technical debt from poor tracking actively hinder employee productivity.
- C: Operational costs rise due to redundant licensing, emergency patching, and potential regulatory fines.
- D: Security failures and data loss resulting from poor oversight inevitably destroy customer trust.
Think like a manager:
Visibility is the prerequisite for all other security controls. Asset management is a strategic risk management function essential for maintaining a defensible security posture.
Ready to find out if you'd pass?
5,000+ expert-calibrated questions, adaptive CAT mock exams, and gap analysis that shows exactly what to study next.
Try 5 free questions Start 7-day free trial