Isaca CRISC Practice Test - Questions Answers, Page 34
List of questions
Question 331
Which of the following will BEST help an organization evaluate the control environment of several third-party vendors?
Question 332
When prioritizing risk response, management should FIRST:
Question 333
An audit reveals that there are changes in the environment that are not reflected in the risk profile. Which of the following is the BEST course of action?
Question 334
Which of the following is the MAIN reason for analyzing risk scenarios?
Question 335
Which of the following is MOST commonly compared against the risk appetite?
Question 336
An organization has granted a vendor access to its data in order to analyze customer behavior. Which of the following would be the MOST effective control to mitigate the risk of customer data leakage?
Question 337
The MAIN purpose of having a documented risk profile is to:
Question 338
Which of the following is the GREATEST concern when using a generic set of IT risk scenarios for risk analysis?
Question 339
Which of the following activities should be performed FIRST when establishing IT risk management processes?
Question 340
An organization has introduced risk ownership to establish clear accountability for each process. To ensure effective risk ownership, it is MOST important that:
        
 
                                            
Question