Isaca CRISC Practice Test - Questions Answers, Page 67

List of questions
Question 661

A risk manager has determined there is excessive risk with a particular technology. Who is the BEST person to own the unmitigated risk of the technology?
Question 662

An organization learns of a new ransomware attack affecting organizations worldwide. Which of the following should be done FIRST to reduce the likelihood of infection from the attack?
Question 663

Which of the following is the MOST important objective of establishing an enterprise risk management (ERM) function within an organization?
Question 664

Which of the following is the BEST key control indicator (KCI) for a vulnerability management program?
Question 665

Who is BEST suited to determine whether a new control properly mitigates data loss risk within a system?
Question 666

Which of the following BEST facilitates the mitigation of identified gaps between current and desired risk environment states?
Question 667

An application runs a scheduled job that compiles financial data from multiple business systems and updates the financial reporting system. If this job runs too long, it can delay financial reporting. Which of the following is the risk practitioner's BEST recommendation?
Question 668

Which of the following roles is BEST suited to help a risk practitioner understand the impact of IT-related events on business objectives?
Question 669

Which of the following is the MOST effective control to ensure user access is maintained on a least-privilege basis?
Question 670

A deficient control has been identified which could result in great harm to an organization should a low frequency threat event occur. When communicating the associated risk to senior management the risk practitioner should explain:
Question