Isaca CRISC Practice Test - Questions Answers, Page 26
List of questions
Question 251
Which of the following is a KEY responsibility of the second line of defense?
Question 252
A risk practitioner learns that the organization s industry is experiencing a trend of rising security incidents. Which of the following is the BEST course of action?
Question 253
A new regulator/ requirement imposes severe fines for data leakage involving customers' personally identifiable information (Pll). The risk practitioner has recommended avoiding the risk. Which of the following actions would BEST align with this recommendation?
Question 254
Which of the following would be MOST helpful to a risk owner when making risk-aware decisions?
Question 255
Which of the following is MOST important to enable well-informed cybersecurity risk decisions?
Question 256
An organization with a large number of applications wants to establish a security risk assessment program. Which of the following would provide the MOST useful information when determining the frequency of risk assessments?
Question 257
When assessing the maturity level of an organization's risk management framework, which of the following deficiencies should be of GREATEST concern to a risk practitioner?
Question 258
Which of the following is MOST helpful in verifying that the implementation of a risk mitigation control has been completed as intended?
Question 259
A newly enacted information privacy law significantly increases financial penalties for breaches of personally identifiable information (Pll). Which of the following will MOST likely outcome for an organization affected by the new law?
Question 260
The BEST criteria when selecting a risk response is the:
Question