Isaca CRISC Practice Test - Questions Answers, Page 99

List of questions
Question 981

Which of the following is MOST important to update when an organization's risk appetite changes?
Question 982

The BEST key performance indicator (KPI) to measure the effectiveness of the security patching process is the percentage of patches installed:
Question 983

In order to efficiently execute a risk response action plan, it is MOST important for the emergency response team members to understand:
Question 984

Which of the following is the BEST indicator of executive management's support for IT risk mitigation efforts?
Question 985

Which of the following BEST enables risk-based decision making in support of a business continuity plan (BCP)?
Question 986

Which of the following is MOST important for senior management to review during an acquisition?
Question 987

Senior management wants to increase investment in the organization's cybersecurity program in response to changes in the external threat landscape. Which of the following would BEST help to prioritize investment efforts?
Question 988

A recent vulnerability assessment of a web-facing application revealed several weaknesses. Which of the following should be done NEXT to determine the risk exposure?
Question 989

Which of the following should be of GREATEST concern when reviewing the results of an independent control assessment to determine the effectiveness of a vendor's control environment?
Question 990

Which of the following is the MOST critical factor to consider when determining an organization's risk appetite?
Question