Isaca CRISC Practice Test - Questions Answers, Page 29
List of questions
Quantifying the value of a single asset helps the organization to understand the:
A PRIMARY function of the risk register is to provide supporting information for the development of an organization's risk:
A risk practitioner recently discovered that sensitive data from the production environment is required for testing purposes in non-production environments. Which of the following i the BEST recommendation to address this situation?
IT stakeholders have asked a risk practitioner for IT risk profile reports associated with specific departments to allocate resources for risk mitigation. The BEST way to address this request would be to use:
Which of the following is the MAIN benefit of involving stakeholders in the selection of key risk indicators (KRIs)?
Which of the following BEST indicates effective information security incident management?
Which of the following is a detective control?
Whose risk tolerance matters MOST when making a risk decision?
An identified high probability risk scenario involving a critical, proprietary business function has an annualized cost of control higher than the annual loss expectancy. Which of the following is the BEST risk response?
After identifying new risk events during a project, the project manager s NEXT step should be to:
Question