Isaca CRISC Practice Test - Questions Answers, Page 144

List of questions
Question 1431

Concerned about system load capabilities during the month-end close process, management requires monitoring of the average time to complete tasks and monthly reporting of the findings. What type of measure has been established?
Question 1432

Within the three lines of defense model, the PRIMARY responsibility for ensuring risk mitigation controls are properly configured belongs with:
Question 1433

A business unit is updating a risk register with assessment results for a key project. Which of the following is MOST important to capture in the register?
Question 1434

An organization has established a policy prohibiting ransom payments if subjected to a ransomware attack. Which of the following is the MOST effective control to support this policy?
Question 1435

An organization recently implemented a cybersecurity awareness program that includes phishing simulation exercises for all employees. What type of control is being utilized?
Question 1436

During the creation of an organization's IT risk management program, the BEST time to identify key risk indicators (KRIs) is while:
Question 1437

During a post-implementation review for a new system, users voiced concerns about missing functionality. Which of the following is the BEST way for the organization to avoid this situation in the future?
Question 1438

An organization is outsourcing a key database to be hosted by an external service provider. Who is BEST suited to assess the impact of potential data loss?
Question 1439

A risk practitioner has been asked to propose a risk acceptance framework for an organization. Which of the following is the MOST important consideration for the risk practitioner to address in the framework?
Question 1440

Which of the following BEST mitigates reputational risk associated with disinformation campaigns against an organization?
Question