Isaca CRISC Practice Test - Questions Answers, Page 21
List of questions
Question 201
When updating a risk register with the results of an IT risk assessment, the risk practitioner should log:
Question 202
Which of the following observations would be GREATEST concern to a risk practitioner reviewing the implementation status of management action plans?
Question 203
Which of the following would BEST enable mitigation of newly identified risk factors related to internet of Things (loT)?
Question 204
Which of the following would be a weakness in procedures for controlling the migration of changes to production libraries?
Question 205
During the initial risk identification process for a business application, it is MOST important to include which of the following stakeholders?
Question 206
The PRIMARY purpose of using control metrics is to evaluate the:
Question 207
Risk aggregation in a complex organization will be MOST successful when:
Question 208
An organization is considering modifying its system to enable acceptance of credit card payments. To reduce the risk of data exposure, which of the following should the organization do FIRST?
Question 209
Which of the following provides The BEST information when determining whether to accept residual risk of a critical system to be implemented?
Question 210
The risk associated with inadvertent disclosure of database records from a public cloud service provider (CSP) would MOST effectively be reduced by:
Question