Isaca CRISC Practice Test - Questions Answers, Page 40

List of questions
Question 391

Which of the following should an organization perform to forecast the effects of a disaster?
Question 392

Which of the following can be used to assign a monetary value to risk?
Question 393

A recent internal risk review reveals the majority of core IT application recovery time objectives (RTOs) have exceeded the maximum time defined by the business application owners. Which of the following is MOST likely to change as a result?
Question 394

A business manager wants to leverage an existing approved vendor solution from another area within the organization. Which of the following is the risk practitioner's BEST course of action?
Question 395

It is MOST important to the effectiveness of an IT risk management function that the associated processes are:
Question 396

A department has been granted an exception to bypass the existing approval process for purchase orders. The risk practitioner should verify the exception has been approved by which of the following?
Question 397

Which of the following would be MOST beneficial as a key risk indicator (KRI)?
Question 398

Of the following, who should be responsible for determining the inherent risk rating of an application?
Question 399

Which of the following would provide the MOST comprehensive information for updating an organization's risk register?
Question 400

Which of the following statements in an organization's current risk profile report is cause for further action by senior management?
Question