Isaca CRISC Practice Test - Questions Answers, Page 29

List of questions
Question 281

Quantifying the value of a single asset helps the organization to understand the:
Question 282

A PRIMARY function of the risk register is to provide supporting information for the development of an organization's risk:
Question 283

A risk practitioner recently discovered that sensitive data from the production environment is required for testing purposes in non-production environments. Which of the following i the BEST recommendation to address this situation?
Question 284

IT stakeholders have asked a risk practitioner for IT risk profile reports associated with specific departments to allocate resources for risk mitigation. The BEST way to address this request would be to use:
Question 285

Which of the following is the MAIN benefit of involving stakeholders in the selection of key risk indicators (KRIs)?
Question 286

Which of the following BEST indicates effective information security incident management?
Question 287

Which of the following is a detective control?
Question 288

Whose risk tolerance matters MOST when making a risk decision?
Question 289

An identified high probability risk scenario involving a critical, proprietary business function has an annualized cost of control higher than the annual loss expectancy. Which of the following is the BEST risk response?
Question 290

After identifying new risk events during a project, the project manager s NEXT step should be to:
Question