FRM Part II · FRM Exam Part II · Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector
A regional bank's board asks the risk function to explain how 'digital resilience' differs from traditional cybersecurity. Which statement best captures the distinction?
Digital resilience is the ability to prevent, adapt to, respond to and recover from digital disruptions while keeping critical services running. It is broader than cybersecurity, which mainly protects systems and data, because resilience assumes some incidents will occur and stresses continuity and recovery.
- ADigital resilience focuses only on preventing intrusions at the network perimeter, while cybersecurity covers recovery
- BDigital resilience is the ability to prevent, adapt to, respond to and recover from digital disruptions so critical services continue, extending beyond protection aloneCorrect
- CDigital resilience applies only to third-party vendors, while cybersecurity applies only to internal systems
- DDigital resilience concerns only compliance with data-privacy laws, while cybersecurity concerns operational continuity
Explanation
Digital resilience is broader than cybersecurity: it covers the capacity to withstand, respond to and recover from disruptions while maintaining critical operations. Cybersecurity mainly concerns protecting systems and data. The perimeter-only option reverses the roles, since prevention alone is not resilience.
Did you get it right without looking?
One question tells you little. A timed set on Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector shows your real accuracy, how long you take and where you lose marks.
More Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector questions
- A supervisor wants a framework that reflects the view that cyber incidents at financial institutions can become systemic. Which policy appro…
- A regional bank migrates its core payment processing to a single cloud provider to cut costs. Which feature of this change most directly rai…
- A regional bank's security team detects a new ransomware variant targeting payment systems. It wants to alert peers quickly without exposing…
- An insurer writes cyber policies with a 1,000 policy portfolio, each with a 4 million limit. It estimates an independent annual claim probab…
- A supervisor is assessing why the cyber insurance market may be unable to absorb systemic digital shocks. Which feature of cyber risk most d…
- Which feature best describes threat-led penetration testing as used in digital resilience frameworks?