Free Certification Practice Questions

ISACA-CRISC

Loading…
Which of the following is the PRIMARY advantage of having a single integrated business continuity plan (BCP) rather than each business unit developing its own BCP?
#1441
What should a risk practitioner do FIRST when an assessment reveals a control is not operating as intended?
#1442
Which of the following will have the GREATEST influence on the residual risk level in an organization?
#1443
Which of the following should be done FIRST when developing an initial set of risk scenarios for an organization?
#1444
Which of the following should be the PRIMARY driver for the prioritization of risk responses?
#1445
An organization's board of directors is concerned about recent data breaches in the news and wants to assess its exposure to similar scenarios. Which of the following is the BEST course of action?
#1446
Which of the following events is MOST likely to trigger the need to conduct a risk assessment?
#1447
Which of the following would produce the MOST comprehensive and relevant enterprise risk scenarios?
#1448
Which of the following events is MOST likely to trigger an update to the risk register?
#1449
A risk practitioner is developing risk scenarios for a manufacturing organization that uses highly specialized systems to control its production process. Which of the following will BEST support management decision making that adequately addresses impacts to these systems?
#1450
Warning banners on login screens for laptops provided by an organization to its employees are an example of which type of control?
#1451
Which of the following describes the relationship between risk appetite and risk tolerance?
#1452