Isaca CRISC Practice Test - Questions Answers, Page 30
List of questions
Which of the following is the BEST way to identify changes in the risk profile of an organization?
Sensitive data has been lost after an employee inadvertently removed a file from the premises, in violation of organizational policy. Which of the following controls MOST likely failed?
Which of the following statements BEST describes risk appetite?
An organization is considering allowing users to access company data from their personal devices. Which of the following is the MOST important factor when assessing the risk?
An organization has four different projects competing for funding to reduce overall IT risk. Which project should management defer?
What can be determined from the risk scenario chart?
As part of an overall IT risk management plan, an IT risk register BEST helps management:
To help ensure all applicable risk scenarios are incorporated into the risk register, it is MOST important to review the:
An organization has completed a project to implement encryption on all databases that host customer data. Which of the following elements of the risk register should be updated the reflect this change?
When collecting information to identify IT-related risk, a risk practitioner should FIRST focus on IT:
Question