Isaca CRISC Practice Test - Questions Answers, Page 35
List of questions
Question 341
After mapping generic risk scenarios to organizational security policies, the NEXT course of action should be to:
Question 342
Which of the following is MOST likely to be impacted as a result of a new policy which allows staff members to remotely connect to the organization's IT systems via personal or public computers?
Question 343
Which of the following MUST be assessed before considering risk treatment options for a scenario with significant impact?
Question 344
The PRIMARY goal of a risk management program is to:
Question 345
Which of the following is the BEST way to determine software license compliance?
Question 346
An organization has outsourced its lease payment process to a service provider who lacks evidence of compliance with a necessary regulatory standard. Which risk treatment was adopted by the organization?
Question 347
Which of the following indicates an organization follows IT risk management best practice?
Question 348
Which of the following should be the MAIN consideration when validating an organization's risk appetite?
Question 349
Which of the following is the BEST way to promote adherence to the risk tolerance level set by management?
Question 350
A software developer has administrative access to a production application. Which of the following should be of GREATEST concern to a risk practitioner?
        
 
                                            
Question