Isaca IT Risk Fundamentals Practice Test - Questions Answers, Page 8
Related questions
Organizations monitor control statuses to provide assurance that:
compliance with established standards is achieved.
risk events are being fully mitigated.
return on investment (ROI) objectives are met.
The MOST important reason to monitor implemented controls is to ensure the controls:
are effective and manage risk to the desired level.
enable IT operations to meet agreed service levels.
mitigate risk associated with regulatory noncompliance.
Which of the following statements on an organization's cybersecurity profile is BEST suited for presentation to management?
The probability of a cyber attack varies between unlikely and very likely.
Risk management believes the likelihood of a cyber attack is not imminent.
Security measures are configured to minimize the risk of a cyber attack.
Which of the following is used to estimate the frequency and magnitude of a given risk scenario?
Risk analysis
Risk register
Risk governance
Which of the following risk analysis methods gathers different types of potential risk ideas to be validated and ranked by an individual or small groups during interviews?
Brainstorming model
Delphi technique
Monte Cado analysis
Question