Isaca CRISC Practice Test - Questions Answers, Page 30
List of questions
Question 291
Which of the following is the BEST way to identify changes in the risk profile of an organization?
Question 292
Sensitive data has been lost after an employee inadvertently removed a file from the premises, in violation of organizational policy. Which of the following controls MOST likely failed?
Question 293
Which of the following statements BEST describes risk appetite?
Question 294
An organization is considering allowing users to access company data from their personal devices. Which of the following is the MOST important factor when assessing the risk?
Question 295
An organization has four different projects competing for funding to reduce overall IT risk. Which project should management defer?
Question 296
What can be determined from the risk scenario chart?
Question 297
As part of an overall IT risk management plan, an IT risk register BEST helps management:
Question 298
To help ensure all applicable risk scenarios are incorporated into the risk register, it is MOST important to review the:
Question 299
An organization has completed a project to implement encryption on all databases that host customer data. Which of the following elements of the risk register should be updated the reflect this change?
Question 300
When collecting information to identify IT-related risk, a risk practitioner should FIRST focus on IT:
Question