Isaca CRISC Practice Test - Questions Answers, Page 23
List of questions
An organization has decided to implement an emerging technology and incorporate the new capabilities into its strategic business plan. Business operations for the technology will be outsourced. What will be the risk practitioner's PRIMARY role during the change?
Who is PRIMARILY accountable for risk treatment decisions?
Which of the following presents the GREATEST challenge for an IT risk practitioner who wants to report on trends in historical IT risk levels?
When presenting risk, the BEST method to ensure that the risk is measurable against the organization's risk appetite is through the use of a:
What should a risk practitioner do FIRST upon learning a risk treatment owner has implemented a different control than what was specified in the IT risk action plan?
The maturity of an IT risk management program is MOST influenced by:
Which of the following is the BEST approach for performing a business impact analysis (BIA) of a supply-chain management application?
Which of the following will provide the BEST measure of compliance with IT policies?
From a risk management perspective, which of the following is the PRIMARY benefit of using automated system configuration validation tools?
Which of the following is a KEY outcome of risk ownership?
Question