Isaca CRISC Practice Test - Questions Answers, Page 21
List of questions
When updating a risk register with the results of an IT risk assessment, the risk practitioner should log:
Which of the following observations would be GREATEST concern to a risk practitioner reviewing the implementation status of management action plans?
Which of the following would BEST enable mitigation of newly identified risk factors related to internet of Things (loT)?
Which of the following would be a weakness in procedures for controlling the migration of changes to production libraries?
During the initial risk identification process for a business application, it is MOST important to include which of the following stakeholders?
The PRIMARY purpose of using control metrics is to evaluate the:
Risk aggregation in a complex organization will be MOST successful when:
An organization is considering modifying its system to enable acceptance of credit card payments. To reduce the risk of data exposure, which of the following should the organization do FIRST?
Which of the following provides The BEST information when determining whether to accept residual risk of a critical system to be implemented?
The risk associated with inadvertent disclosure of database records from a public cloud service provider (CSP) would MOST effectively be reduced by:
Question