Isaca CRISC Practice Test - Questions Answers, Page 23
List of questions
Question 221
An organization has decided to implement an emerging technology and incorporate the new capabilities into its strategic business plan. Business operations for the technology will be outsourced. What will be the risk practitioner's PRIMARY role during the change?
Question 222
Who is PRIMARILY accountable for risk treatment decisions?
Question 223
Which of the following presents the GREATEST challenge for an IT risk practitioner who wants to report on trends in historical IT risk levels?
Question 224
When presenting risk, the BEST method to ensure that the risk is measurable against the organization's risk appetite is through the use of a:
Question 225
What should a risk practitioner do FIRST upon learning a risk treatment owner has implemented a different control than what was specified in the IT risk action plan?
Question 226
The maturity of an IT risk management program is MOST influenced by:
Question 227
Which of the following is the BEST approach for performing a business impact analysis (BIA) of a supply-chain management application?
Question 228
Which of the following will provide the BEST measure of compliance with IT policies?
Question 229
From a risk management perspective, which of the following is the PRIMARY benefit of using automated system configuration validation tools?
Question 230
Which of the following is a KEY outcome of risk ownership?
Question