Isaca CRISC Practice Test - Questions Answers, Page 26

List of questions
Question 251

Which of the following is a KEY responsibility of the second line of defense?
Question 252

A risk practitioner learns that the organization s industry is experiencing a trend of rising security incidents. Which of the following is the BEST course of action?
Question 253

A new regulator/ requirement imposes severe fines for data leakage involving customers' personally identifiable information (Pll). The risk practitioner has recommended avoiding the risk. Which of the following actions would BEST align with this recommendation?
Question 254

Which of the following would be MOST helpful to a risk owner when making risk-aware decisions?
Question 255

Which of the following is MOST important to enable well-informed cybersecurity risk decisions?
Question 256

An organization with a large number of applications wants to establish a security risk assessment program. Which of the following would provide the MOST useful information when determining the frequency of risk assessments?
Question 257

When assessing the maturity level of an organization's risk management framework, which of the following deficiencies should be of GREATEST concern to a risk practitioner?
Question 258

Which of the following is MOST helpful in verifying that the implementation of a risk mitigation control has been completed as intended?
Question 259

A newly enacted information privacy law significantly increases financial penalties for breaches of personally identifiable information (Pll). Which of the following will MOST likely outcome for an organization affected by the new law?
Question 260

The BEST criteria when selecting a risk response is the:
Question