ExamGecko
Home / Isaca / CRISC / List of questions
Ask Question

Isaca CRISC Practice Test - Questions Answers, Page 9

Add to Whishlist

List of questions

Question 81

Report Export Collapse

Which of the following is the BEST way for a risk practitioner to help management prioritize risk response?

Align business objectives to the risk profile.
Align business objectives to the risk profile.
Assess risk against business objectives
Assess risk against business objectives
Implement an organization-specific risk taxonomy.
Implement an organization-specific risk taxonomy.
Explain risk details to management.
Explain risk details to management.
Suggested answer: B
asked 18/09/2024
Antonio Pombo
33 questions

Question 82

Report Export Collapse

Which of the following would BEST ensure that identified risk scenarios are addressed?

Reviewing the implementation of the risk response
Reviewing the implementation of the risk response
Creating a separate risk register for key business units
Creating a separate risk register for key business units
Performing real-time monitoring of threats
Performing real-time monitoring of threats
Performing regular risk control self-assessments
Performing regular risk control self-assessments
Suggested answer: C
asked 18/09/2024
Meriem Jlassi
40 questions

Question 83

Report Export Collapse

A risk heat map is MOST commonly used as part of an IT risk analysis to facilitate risk:

communication
communication
identification.
identification.
treatment.
treatment.
assessment.
assessment.
Suggested answer: D
asked 18/09/2024
Okan YILDIZ
46 questions

Question 84

Report Export Collapse

The PRIMARY objective of testing the effectiveness of a new control before implementation is to:

ensure that risk is mitigated by the control.
ensure that risk is mitigated by the control.
measure efficiency of the control process.
measure efficiency of the control process.
confirm control alignment with business objectives.
confirm control alignment with business objectives.
comply with the organization's policy.
comply with the organization's policy.
Suggested answer: C
asked 18/09/2024
Marc Casin Martinez
43 questions

Question 85

Report Export Collapse

Which of the following is the PRIMARY reason to perform ongoing risk assessments?

Emerging risk must be continuously reported to management.
Emerging risk must be continuously reported to management.
New system vulnerabilities emerge at frequent intervals.
New system vulnerabilities emerge at frequent intervals.
The risk environment is subject to change.
The risk environment is subject to change.
The information security budget must be justified.
The information security budget must be justified.
Suggested answer: C
asked 18/09/2024
Ravindra MG
31 questions

Question 86

Report Export Collapse

Malware has recently affected an organization. The MOST effective way to resolve this situation and define a comprehensive risk treatment plan would be to perform:

a gap analysis
a gap analysis
a root cause analysis.
a root cause analysis.
an impact assessment.
an impact assessment.
a vulnerability assessment.
a vulnerability assessment.
Suggested answer: B
asked 18/09/2024
Muneer Deers
49 questions

Question 87

Report Export Collapse

Which of the following is MOST effective against external threats to an organizations confidential information?

Single sign-on
Single sign-on
Data integrity checking
Data integrity checking
Strong authentication
Strong authentication
Intrusion detection system
Intrusion detection system
Suggested answer: C
asked 18/09/2024
Vijayakumar Dhandapani
45 questions

Question 88

Report Export Collapse

Which of the following is the MOST important foundational element of an effective three lines of defense model for an organization?

A robust risk aggregation tool set
A robust risk aggregation tool set
Clearly defined roles and responsibilities
Clearly defined roles and responsibilities
A well-established risk management committee
A well-established risk management committee
Well-documented and communicated escalation procedures
Well-documented and communicated escalation procedures
Suggested answer: B
asked 18/09/2024
Kaniamuthan K
49 questions

Question 89

Report Export Collapse

Which of the following is the MOST important characteristic of an effective risk management program?

Risk response plans are documented
Risk response plans are documented
Controls are mapped to key risk scenarios.
Controls are mapped to key risk scenarios.
Key risk indicators are defined.
Key risk indicators are defined.
Risk ownership is assigned
Risk ownership is assigned
Suggested answer: D
asked 18/09/2024
Larry Severin
40 questions

Question 90

Report Export Collapse

In an organization with a mature risk management program, which of the following would provide the BEST evidence that the IT risk profile is up to date?

Risk questionnaire
Risk questionnaire
Risk register
Risk register
Management assertion
Management assertion
Compliance manual
Compliance manual
Suggested answer: B
asked 18/09/2024
Sam K
36 questions
Total 1.573 questions
Go to page: of 158

Related questions