Isaca CRISC Practice Test - Questions Answers, Page 109

List of questions
Question 1081

Which of the following BEST facilitates the identification of appropriate key performance indicators (KPIs) for a risk management program?
Question 1082

Which of the following is a risk practitioner's BEST recommendation upon learning that an employee inadvertently disclosed sensitive data to a vendor?
Question 1083

Which of the following is the BEST method to maintain a common view of IT risk within an organization?
Question 1084

Which of the following is the MOST important information to cover a business continuity awareness Ira nine, program for all employees of the organization?
Question 1085

Which of the following is the BEST approach for selecting controls to minimize risk?
Question 1086

The MAIN reason for prioritizing IT risk responses is to enable an organization to:
Question 1087

An organization has experienced a cyber attack that exposed customer personally identifiable information (Pll) and caused extended outages of network services. Which of the following stakeholders are MOST important to include in the cyber response team to determine response actions?
Question 1088

Which of the following is the PRIMARY reason for a risk practitioner to review an organization's IT asset inventory?
Question 1089

An organization's business gap analysis reveals the need for a robust IT risk strategy. Which of the following should be the risk practitioner's PRIMARY consideration when participating in development of the new strategy?
Question 1090

A risk practitioner implemented a process to notify management of emergency changes that may not be approved. Which of the following is the BEST way to provide this information to management?
Question