Official Bank 0/1867

Certified in Risk and Information Systems Control Exam (CRISC) - Isaca Actual Exam Questions

Last updated on May 02, 2026

97% Exam Compliance
1867 Total Questions
1
Question

Which of the following will MOST improve stakeholders' understanding of the effect of a potential threat?

Options
A

Establishing a risk management committee

B

Updating the organization's risk register to reflect the new threat

C

Communicating the results of the threat impact analysis

D

Establishing metrics to assess the effectiveness of the responses

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question

Establishing and organizational code of conduct is an example of which type of control?

Options
A

Preventive

B

Directive

C

Detective

D

Compensating

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question

An organization has outsourced its customer management database to an external service provider. Of the following, who should be accountable for ensuring customer data privacy?

Options
A

The organization's business process owner

B

The organization's information security manager

C

The organization's vendor management officer

D

The vendor's risk manager

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question

Within the three lines of defense model, the responsibility for managing risk and controls resides with:

Options
A

operational management.

B

the risk practitioner.

C

the internal auditor.

D

executive management.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question

What is the PRIMARY benefit of risk monitoring?

Options
A

It reduces the number of audit findings.

B

It provides statistical evidence of control efficiency.

C

Itfacilitates risk-aware decision making.

D

It facilitates communication of threat levels.

Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.