Isaca CRISC Practice Test - Questions Answers, Page 23

List of questions
Question 221

An organization has decided to implement an emerging technology and incorporate the new capabilities into its strategic business plan. Business operations for the technology will be outsourced. What will be the risk practitioner's PRIMARY role during the change?
Question 222

Who is PRIMARILY accountable for risk treatment decisions?
Question 223

Which of the following presents the GREATEST challenge for an IT risk practitioner who wants to report on trends in historical IT risk levels?
Question 224

When presenting risk, the BEST method to ensure that the risk is measurable against the organization's risk appetite is through the use of a:
Question 225

What should a risk practitioner do FIRST upon learning a risk treatment owner has implemented a different control than what was specified in the IT risk action plan?
Question 226

The maturity of an IT risk management program is MOST influenced by:
Question 227

Which of the following is the BEST approach for performing a business impact analysis (BIA) of a supply-chain management application?
Question 228

Which of the following will provide the BEST measure of compliance with IT policies?
Question 229

From a risk management perspective, which of the following is the PRIMARY benefit of using automated system configuration validation tools?
Question 230

Which of the following is a KEY outcome of risk ownership?
Question