Isaca CRISC Practice Test - Questions Answers, Page 91
List of questions
Question 901
An organization wants to grant remote access to a system containing sensitive data to an overseas third party. Which of the following should be of GREATEST concern to management?
Question 902
Which of the following stakeholders are typically included as part of a line of defense within the three lines of defense model?
Question 903
Which of the following will BEST help to ensure new IT policies address the enterprise's requirements?
Question 904
A multinational organization is considering implementing standard background checks to' all new employees A KEY concern regarding this approach
Question 905
An organization's control environment is MOST effective when:
Question 906
Who is BEST suited to provide objective input when updating residual risk to reflect the results of control effectiveness?
Question 907
The following is the snapshot of a recently approved IT risk register maintained by an organization's information security department.
After implementing countermeasures listed in ''Risk Response Descriptions'' for each of the Risk IDs, which of the following component of the register MUST change?
Question 908
Of the following, who is BEST suited to assist a risk practitioner in developing a relevant set of risk scenarios?
Question 909
An organization has made a decision to purchase a new IT system. During when phase of the system development life cycle (SDLC) will identified risk MOST likely lead to architecture and design trade-offs?
Question 910
Recovery the objectives (RTOs) should be based on
Question