Q1. During the creation of an organization's IT risk management program, the BEST time to identify key risk indicators (KRIs) is while:
A.Interviewing data owners
B. Reviewing risk response plans with internal audit
C. Developing a risk monitoring process
D. Reviewing an external risk assessment
Correct Answer: C
Q2. Which of the following is the MOST important reason for a risk practitioner to continuously monitor a critical security transformation program?
A.To validate the quality of defined deliverables for the program
B. To detect increases in program costs
C. To ensure program risk events are mitigated in a timely manner
D. To provide timely reporting to the governance steering committee
Correct Answer: C
Q3. An organization recently implemented a machine learning-based solution to monitor IT usage and analyze user behavior in an effort to detect internal fraud. Which of the following is MOST likely to be reassessed as a result of this initiative?
A.Risk likelihood
B. Risk culture
C. Risk appetite
D. Risk capacity
Correct Answer: A
Q4. A poster has been displayed in a data center that reads. "Anyone caught taking photographs in the data center may be subject to disciplinary action." Which of the following control types has been implemented?
A.Corrective
B. Detective
C. Deterrent
D. Preventative
Correct Answer: A
$ 39
Reviews
There are no reviews yet.