ExamGecko
Question list
Search
Search

Related questions











Question 365 - CRISC discussion

Report
Export

Which of the following should be of GREATEST concern to a risk practitioner when determining the effectiveness of IT controls?

A.
Configuration updates do not follow formal change control.
Answers
A.
Configuration updates do not follow formal change control.
B.
Operational staff perform control self-assessments.
Answers
B.
Operational staff perform control self-assessments.
C.
Controls are selected without a formal cost-benefit
Answers
C.
Controls are selected without a formal cost-benefit
D.
analysis-Management reviews security policies once every two years.
Answers
D.
analysis-Management reviews security policies once every two years.
Suggested answer: A
asked 18/09/2024
Fednol Presume
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first