Skip to content

Module 2 Graded Quiz: Foundations of IT Service Management and Risk Governance :Cybersecurity Compliance Framework, Standards & Regulations (IBM Cybersecurity Analyst Professional Certificate) Answers 2025

1. Question 1

Relationship between ITIL and ITSM:

  • ❌ ITIL is an updated version of ITSM

  • ITIL is a subset of ITSM

  • ❌ ITSM is a subset of ITIL

  • ❌ They are competing frameworks

Explanation:
ITSM (IT Service Management) is the broad discipline; ITIL is one framework used to implement ITSM.


2. Question 2

Key objective of Service Transition in ITIL:

  • Managing changes in a controlled way

  • ❌ Negotiating SLAs

  • ❌ Reviewing performance

  • ❌ Restoring service

Explanation:
Service Transition ensures services are built, tested, and deployed smoothly.


3. Question 3

Purpose of the Deming Cycle (Plan-Do-Check-Act):

  • Continuous improvement

  • ❌ Catalog services

  • ❌ Negotiate SLAs

  • ❌ Manage risks


4. Question 4

SWOT analysis uncovers:

  • ❌ Organizational structure

  • ❌ Financial strategies

  • Internal weaknesses and external threats

  • ❌ Marketing opportunities


5. Question 5

Agreement outlining general terms for future projects:

  • ❌ NDA

  • ❌ SLA

  • ❌ MOA

  • Master Service Agreement (MSA)

Explanation:
An MSA defines reusable terms for ongoing business relationships.


6. Question 6

Single Loss Expectancy (SLE) measures:

  • ❌ Annual frequency

  • ❌ Total annual loss

  • ❌ Percentage loss

  • Financial impact of a single risk event


7. Question 7

Why transparency is important in AI smart home devices:

  • ❌ Enhances comfort

  • Allows users to understand how their data is processed

  • ❌ Improves efficiency

  • ❌ Improves energy usage


8. Question 8

Consequence of poor change management in cybersecurity:

  • ❌ Faster implementation

  • ❌ Better performance

  • New vulnerabilities and unexpected downtime

  • ❌ Lower costs


9. Question 9

How the EU AI Act categorizes AI applications:

  • Based on risk levels

  • ❌ Profitability

  • ❌ Data type

  • ❌ Company size


10. Question 10

EU AI Act record-keeping emphasizes:

  • ❌ Entertainment value

  • ❌ Visual appeal

  • Ethical and legal compliance

  • ❌ Speed of AI operations


🧾 Summary Table

Q Correct Answer Key Concept
1 ITIL ⊂ ITSM Framework relationship
2 Controlled change management Service Transition
3 Continuous improvement Deming Cycle
4 Weaknesses & threats SWOT
5 MSA Contracting
6 Single loss impact SLE
7 Data-processing transparency AI ethics
8 New vulnerabilities & downtime Change risk
9 Risk-based categories EU AI Act
10 Ethical/legal compliance AI record-keeping