Isaca CRISC Practice Test - Questions Answers, Page 104

List of questions
Question 1031

A risk practitioner recently discovered that personal information from the production environment is required for testing purposes in non-production environments. Which of the following is the BEST recommendation to address this situation?
Question 1032

Which of the following is the GREATEST concern when establishing key risk indicators (KRIs)?
Question 1033

Which of the following provides the MOST useful information to assess the magnitude of identified deficiencies in the IT control environment?
Question 1034

Which of the following provides the BEST assurance of the effectiveness of vendor security controls?
Question 1035

The MAIN purpose of selecting a risk response is to.
Question 1036

Which component of a software inventory BEST enables the identification and mitigation of known vulnerabilities?
Question 1037

Which of the following is the BEST way to ensure data is properly sanitized while in cloud storage?
Question 1038

Which risk response strategy could management apply to both positive and negative risk that has been identified?
Question 1039

An organization's recovery team is attempting to recover critical data backups following a major flood in its data center. However, key team members do not know exactly what steps should be taken to address this crisis. Which of the following is the MOST likely cause of this situation?
Question 1040

A control process has been implemented in response to a new regulatory requirement, but has significantly reduced productivity. Which of the following is the BEST way to resolve this concern?
Question