βš–οΈ Security & Risk Management

Domain 1 — Choose a game to play

← Back to Domains
🎯

Risk Management Matcher

Match ALE, BCP, RPO, risk transference, and other key risk management concepts to their definitions.

Drag & Match
πŸ“‹

RMF Step Trainer

Drag 14 real-world scenarios into the correct NIST RMF step: Prepare, Categorize, Select, Implement, Assess, Authorize, Monitor.

Categorize
⚠️

Risk Modeling Terms Matcher

Match threat source, threat vector, vulnerability, threat event, asset, impact, and risk to their precise NIST SP 800-30 definitions.

Drag & Match
πŸ“‹

Audit Types Matcher

Get these right: Internal, External, Second-Party, and Third-Party audits. A clear exam trap β€” especially third-party.

Drag & Match
πŸ—ΊοΈ

Security Planning Levels Matcher

Match Strategic, Tactical, Operational, and Roadmap planning levels to their NIST Tier and COBIT alignment definitions.

Drag & Match
🧠

CISSP vs CISM Mindset Sorter

Sort 10 real exam scenarios into the correct lens β€” CISSP/ISC2 or CISM/ISACA. ISC2 builds security. ISACA governs it.

Drag & Sort
πŸ“œ

Policy Hierarchy Matcher

Match Policy, Standard, Guideline, Procedure, and Baseline to their definitions. Know what's directive vs enforceable.

Drag & Match