Isaca CRISC Practice Test - Questions Answers, Page 30

List of questions
Question 291

Which of the following is the BEST way to identify changes in the risk profile of an organization?
Question 292

Sensitive data has been lost after an employee inadvertently removed a file from the premises, in violation of organizational policy. Which of the following controls MOST likely failed?
Question 293

Which of the following statements BEST describes risk appetite?
Question 294

An organization is considering allowing users to access company data from their personal devices. Which of the following is the MOST important factor when assessing the risk?
Question 295

An organization has four different projects competing for funding to reduce overall IT risk. Which project should management defer?
Question 296

What can be determined from the risk scenario chart?
Question 297

As part of an overall IT risk management plan, an IT risk register BEST helps management:
Question 298

To help ensure all applicable risk scenarios are incorporated into the risk register, it is MOST important to review the:
Question 299

An organization has completed a project to implement encryption on all databases that host customer data. Which of the following elements of the risk register should be updated the reflect this change?
Question 300

When collecting information to identify IT-related risk, a risk practitioner should FIRST focus on IT:
Question