CRISC Domain 2 MCQ

CRISC Domain 2 MCQ

Professional Development

16 Qs

quiz-placeholder

Similar activities

Quiziz Week 3 Day 2

Quiziz Week 3 Day 2

Professional Development

20 Qs

Communication

Communication

Professional Development

20 Qs

CEO HSE FORUM - QUIZ

CEO HSE FORUM - QUIZ

Professional Development

11 Qs

ISO 55001: Awareness 1 (Distribution)

ISO 55001: Awareness 1 (Distribution)

Professional Development

20 Qs

SG20_Test_S8_CH10&13 Communications & Stakeholder

SG20_Test_S8_CH10&13 Communications & Stakeholder

Professional Development

15 Qs

Miami Training Day 2

Miami Training Day 2

Professional Development

11 Qs

CRISC Domain 1 MCQ (A)

CRISC Domain 1 MCQ (A)

Professional Development

20 Qs

Stakeholder Management PMP

Stakeholder Management PMP

Professional Development

16 Qs

CRISC Domain 2 MCQ

CRISC Domain 2 MCQ

Assessment

Quiz

Professional Development

Professional Development

Easy

Created by

John Lee

Used 2+ times

FREE Resource

16 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following is MOST likely be addressed by risk response?

Destruction of obsolete computer equipment

Theft of a smartphone from an office

Sanitization and reuse of a flash drive

Employee deletion of a file

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following is the MOST important reason for conducting periodic risk assessments?

Risk assessments are not always precise.

Reviewers can optimize and reduce the cost of controls

Risk assessments demonstrate the value of risk management to senior management

Business risk is subject to frequent change

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

When a start-up company becomes popular, it suddenly is the target of hackers. This is considered:

an emerging vulnerability

a vulnerability event

an emerging threat

an environmental risk factor

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following choices BEST helps identify information systems control deficiencies?

Gap analysis

The current IT risk profile

The IT controls framework

Countermeasure analysis

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Risk scenarios should be created PRIMARILY based on which of the following?

Input from senior management

Previous security incidents

Threats that the enterprise faces

Results of the risk analysis

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An enterprise learns of a security breach at another entity using similar network technology. The MOST important action for a risk practitioner is to:

assess the likelihood of the incident occurring at the risk practitioner's enterprise

discontinue the use of the vulnerable technology

report to senior management that the enterprise is not affected

remind staff that no similar security breaches have taken place

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Risk scenarios are analysed to determine the:

strength of controls

likelihood and impact

current risk profiles

scenario root cause

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?