CRISC ISACA Exam – Questions With Accurate Solutions
The potential loss to an area due to the occurrence of an adverse event
Right Ans - exposure
An accurate bit-for-bit reproduction of the information contained on an
electronic device or associated media, whose validity and integrity has been
verified using an accepted algorithm (2 words) Right Ans - forensic copy
for each risk located in the risk register, it should at a minimum include.....
Right Ans - date, description, impact, probability, risk score, mitigation action
and owner
main reference for all risk-related information, supporting risk-related
decisions such as risk response activities and their prioritization Right Ans
- risk register
Preparing the risk management strategy is a ____ activity Right Ans -
internal audit
key to achieving an effective risk management capability. Right Ans - joint
planning across the three lines of defense
control execution is generally the responsibility of the _____ line of defense
Right Ans - first
Internal control reporting is carried by the _______ line of defense Right Ans
- first
Assurance functions are generally delivered by the ______ line of defense
Right Ans - third
The _______ line of defense includes compliance, ethics and risk management
and is intended to provide guidance. Right Ans - second
Establishing a risk management framework, providing awareness training,
and supervising overall risk management are responsibilities of the _______ line
of defense Right Ans - second
, Identifying, assessing and selecting responses for risk are part of operational
management, which is the ________ line of defense Right Ans - first
Implementing controls is part of ____ line of defense Right Ans - first
Testing controls for effectiveness and reporting to management are part of the
______ line of defense. Right Ans - third. this is an auditors job
Risk profile and risk factors are defined during the _________ process Right
Ans - risk assessment
Relevance risk is a composite form of business risk, requiring both ____________
and _____________ to be addressed for it to be reasonably controlled Right
Ans - integrity and availability
A lapsed insurance premium describes a _________ Right Ans - this is a
vulnerability
_______________ (type of personel/position/title) are the best to manage and
execute an enterprise's risk management program because they are the most
centrally located within the organizational hierarchy, and they combine a
sufficient breadth of influence with adequate proximity to day-to-day
operations. Right Ans - mid level managers
In a _________ organizational structure, decisions are made by each division
(sales, human resources, etc.). In this kind of organization, different and
perhaps conflicting IT policies can be developed. Right Ans - decentralized
In a __________ organizational structure, each geographic area, or each product
or service, will have its own group. Right Ans - divisional
A _____________ is responsible for consulting on risk and recommending possible
solutions for risk responses Right Ans - risk practitioner/advisor
Control owners own controls but don't make the decision on which control to
use Right Ans - Control owners own controls but don't make the decision
on which control to use
________ is accountable for a risk treatment plan. Right Ans - risk owner
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Studyhall. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $10.99. You're not tied to anything after your purchase.