CRISC Exam Prep Course - Practice Questions - Domain 2 PDF
CRISC Exam Prep Course - Practice Questions - Domain 2 PDF
A.
B.
C.
D.
A.
B.
C.
D.
A.
B.
C.
D.
An analytical review
Compliance testing
A system log analysis
A forensic analysis
A.
B.
C.
D.
20 16 IS A CA . A ll ri gh t s re s er v ed .
Page | 1
6. A substantive test to verify that tape library inventory records are accurate is:
A.
B.
C.
D.
A.
B.
C.
D.
A.
B.
C.
D.
A.
B.
C.
D.
A.
B.
C.
D.
7. The IT department wants to use a server for an enterprise database, but the server
hardware is not certified by the operating system (OS) or the database vendor. A risk
practitioner determines that the use of the database presents:
20 16 IS A CA . A ll ri gh t s re s er v ed .
Page | 2
11. What is the FIRST step for a risk practitioner when an enterprise has decided to
outsource all IT services and support to a third party?
A. Validate that the internal systems of the service provider are secure.
B. Enforce the regulations and standards associated with outsourcing data
management for restrictions on transborder data flow.
C. Ensure that security requirements are addressed in all contracts and agreements.
D. Build a business case to perform an onsite audit of the third-party vendor.
12. Which of the following is MOST beneficial to the improvement of an enterprises risk
management process?
A.
B.
C.
D.
13. A company is confident about the state of its organizational security and compliance
program. Many improvements have been made since the last security review was
conducted one year ago. What should the company do to evaluate its current risk
profile?
A. Review previous findings and ensure that all issues have been resolved.
B. Conduct follow-up audits in areas that were found deficient in the previous review.
C. Monitor the results of the key risk indicators (KRIs) and use those to develop
targeted assessments.
D. Perform a new enterprise risk assessment using an independent expert.
14. Which of the following objectives is the PRIMARY reason risk professionals conduct
risk assessments?
A.
B.
C.
D.
20 16 IS A CA . A ll ri gh t s re s er v ed .
Page | 3