Which term is the strategy of forming layers of protection for an asset?

Prepare for the ANSI / ASIS PAP.1-2012 Physical Asset Protection APP Exam. Enhance your skills with focused study on exam content, structured formats, and expert tips. Optimize your readiness to succeed!

Multiple Choice

Which term is the strategy of forming layers of protection for an asset?

Explanation:
Forming layers of protection around an asset is defense in depth. This approach relies on multiple, overlapping safeguards—such as physical barriers, access controls, monitoring, procedures, and training—so that if one layer is bypassed or fails, others still stand to deter, detect, or slow down the threat. The idea is not to rely on a single control but to create a cascade of protections that together reduce risk to an acceptable level. By distributing protection across people, processes, and technology (and physical measures), you improve resilience and increase the chances of preventing or mitigating harm. Other terms don’t describe this strategy. Records refer to documentation about assets, not a protection system. Preparedness is about being ready to respond to incidents, not the layered protections around an asset. Residual risk means the remaining risk after controls are applied, which is the outcome you assess after implementing layers, not the strategy of layering protections.

Forming layers of protection around an asset is defense in depth. This approach relies on multiple, overlapping safeguards—such as physical barriers, access controls, monitoring, procedures, and training—so that if one layer is bypassed or fails, others still stand to deter, detect, or slow down the threat. The idea is not to rely on a single control but to create a cascade of protections that together reduce risk to an acceptable level. By distributing protection across people, processes, and technology (and physical measures), you improve resilience and increase the chances of preventing or mitigating harm.

Other terms don’t describe this strategy. Records refer to documentation about assets, not a protection system. Preparedness is about being ready to respond to incidents, not the layered protections around an asset. Residual risk means the remaining risk after controls are applied, which is the outcome you assess after implementing layers, not the strategy of layering protections.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy