1.
Which of the following is the MOST important factor affecting risk management in an organization?
2.
Which of the following provides the BEST measurement of an organization's risk management maturity level?
3.
When reviewing management's IT control self-assessments, a risk practitioner noted an ineffective control that links to several low residual risk scenarios. What should be the NEXT course of action?
4.
The BEST way to determine the likelihood of a system availability risk scenario is by assessing the:
5.
Which of the following is MOST appropriate to prevent unauthorized retrieval of confidential information stored in a business application system?
6.
Which of the following is MOST important to the effectiveness of key performance indicators (KPIs)?
7.
Which of the following is the GREATEST benefit to an organization when updates to the risk register are made promptly after the completion of a risk assessment?
8.
After a high-profile systems breach at an organization's key vendor, the vendor has implemented additional mitigating controls. The vendor has voluntarily shared the following set of assessments: Which of the assessments provides the MOST reliable input to evaluate residual risk in the vendor's control environment?
9.
Which of the following approaches would BEST help to identify relevant risk scenarios?
10.
To help ensure the success of a major IT project, it is MOST important to: