List of questions
Question 300 - CRISC discussion
When collecting information to identify IT-related risk, a risk practitioner should FIRST focus on IT:
A.
risk appetite.
B.
security policies
C.
process maps.
D.
risk tolerance level
Your answer:
0 comments
Sorted by
Leave a comment first