Isaca CRISC Practice Test - Questions Answers, Page 36
List of questions
Question 351
The BEST key performance indicator (KPI) to measure the effectiveness of a vulnerability remediation program is the number of:
Question 352
Which of the following should a risk practitioner do FIRST when an organization decides to use a cloud service?
Question 353
Which of the following would BEST help secure online financial transactions from improper users?
Question 354
The purpose of requiring source code escrow in a contractual agreement is to:
Question 355
Which of the following is the BEST indication of the effectiveness of a business continuity program?
Question 356
When reviewing a risk response strategy, senior management's PRIMARY focus should be placed on the:
Question 357
An organization's financial analysis department uses an in-house forecasting application for business projections. Who is responsible for defining access roles to protect the sensitive data within this application?
Question 358
Which of the following is MOST important for an organization that wants to reduce IT operational risk?
Question 359
Which of the following should be a risk practitioner's NEXT action after identifying a high probability of data loss in a system?
Question 360
Which of the following is the MOST important consideration when determining whether to accept residual risk after security controls have been implemented on a critical system?
        
 
                                            
Question