Isaca CRISC Practice Test - Questions Answers, Page 34

List of questions
Question 331

Which of the following will BEST help an organization evaluate the control environment of several third-party vendors?
Question 332

When prioritizing risk response, management should FIRST:
Question 333

An audit reveals that there are changes in the environment that are not reflected in the risk profile. Which of the following is the BEST course of action?
Question 334

Which of the following is the MAIN reason for analyzing risk scenarios?
Question 335

Which of the following is MOST commonly compared against the risk appetite?
Question 336

An organization has granted a vendor access to its data in order to analyze customer behavior. Which of the following would be the MOST effective control to mitigate the risk of customer data leakage?
Question 337

The MAIN purpose of having a documented risk profile is to:
Question 338

Which of the following is the GREATEST concern when using a generic set of IT risk scenarios for risk analysis?
Question 339

Which of the following activities should be performed FIRST when establishing IT risk management processes?
Question 340

An organization has introduced risk ownership to establish clear accountability for each process. To ensure effective risk ownership, it is MOST important that:
Question