Isaca CRISC Practice Test - Questions Answers, Page 67
List of questions
Question 661
A risk manager has determined there is excessive risk with a particular technology. Who is the BEST person to own the unmitigated risk of the technology?
Question 662
An organization learns of a new ransomware attack affecting organizations worldwide. Which of the following should be done FIRST to reduce the likelihood of infection from the attack?
Question 663
Which of the following is the MOST important objective of establishing an enterprise risk management (ERM) function within an organization?
Question 664
Which of the following is the BEST key control indicator (KCI) for a vulnerability management program?
Question 665
Who is BEST suited to determine whether a new control properly mitigates data loss risk within a system?
Question 666
Which of the following BEST facilitates the mitigation of identified gaps between current and desired risk environment states?
Question 667
An application runs a scheduled job that compiles financial data from multiple business systems and updates the financial reporting system. If this job runs too long, it can delay financial reporting. Which of the following is the risk practitioner's BEST recommendation?
Question 668
Which of the following roles is BEST suited to help a risk practitioner understand the impact of IT-related events on business objectives?
Question 669
Which of the following is the MOST effective control to ensure user access is maintained on a least-privilege basis?
Question 670
A deficient control has been identified which could result in great harm to an organization should a low frequency threat event occur. When communicating the associated risk to senior management the risk practitioner should explain:
Question