In an executive summary, how should high-risk findings be presented?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

In an executive summary, how should high-risk findings be presented?

Explanation:
In an executive summary, the emphasis is on risk prioritization and business impact. Present high-risk findings first so leadership immediately sees where the greatest threats to objectives lie and what actions are needed to address them. This order helps decision-makers quickly assess potential impacts on timelines, budget, and operations, and allocate resources accordingly, followed by lower-risk items if needed. Details should be concise and action-oriented, including a brief note on impact, likelihood, and recommended mitigations. Starting with all findings regardless of risk or focusing only on technical details would overwhelm the audience or omit the essential business context executives need to make informed decisions.

In an executive summary, the emphasis is on risk prioritization and business impact. Present high-risk findings first so leadership immediately sees where the greatest threats to objectives lie and what actions are needed to address them. This order helps decision-makers quickly assess potential impacts on timelines, budget, and operations, and allocate resources accordingly, followed by lower-risk items if needed. Details should be concise and action-oriented, including a brief note on impact, likelihood, and recommended mitigations. Starting with all findings regardless of risk or focusing only on technical details would overwhelm the audience or omit the essential business context executives need to make informed decisions.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy