ExamGecko
Question list
Search
Search

Related questions











Question 410 - CRISC discussion

Report
Export

A risk practitioner has observed that risk owners have approved a high number of exceptions to the information security policy. Which of the following should be the risk practitioner's GREATEST concern?

A.
Security policies are being reviewed infrequently.
Answers
A.
Security policies are being reviewed infrequently.
B.
Controls are not operating efficiently.
Answers
B.
Controls are not operating efficiently.
C.
Vulnerabilities are not being mitigated
Answers
C.
Vulnerabilities are not being mitigated
D.
Aggregate risk is approaching the tolerance threshold
Answers
D.
Aggregate risk is approaching the tolerance threshold
Suggested answer: D
asked 18/09/2024
David Murinda
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first