Isaca CRISC Practice Test - Questions Answers, Page 21

List of questions
Question 201

When updating a risk register with the results of an IT risk assessment, the risk practitioner should log:
Question 202

Which of the following observations would be GREATEST concern to a risk practitioner reviewing the implementation status of management action plans?
Question 203

Which of the following would BEST enable mitigation of newly identified risk factors related to internet of Things (loT)?
Question 204

Which of the following would be a weakness in procedures for controlling the migration of changes to production libraries?
Question 205

During the initial risk identification process for a business application, it is MOST important to include which of the following stakeholders?
Question 206

The PRIMARY purpose of using control metrics is to evaluate the:
Question 207

Risk aggregation in a complex organization will be MOST successful when:
Question 208

An organization is considering modifying its system to enable acceptance of credit card payments. To reduce the risk of data exposure, which of the following should the organization do FIRST?
Question 209

Which of the following provides The BEST information when determining whether to accept residual risk of a critical system to be implemented?
Question 210

The risk associated with inadvertent disclosure of database records from a public cloud service provider (CSP) would MOST effectively be reduced by:
Question