Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Isaca IT-Risk-Fundamentals Practice Exam with Questions & Answers | Set: 4

Questions 31

Detailed risk management reports should be targeted to a specific audience based on:

Options:
A.

need to know.

B.

industry benchmarks.

C.

seniority levels in the enterprise.

Isaca IT-Risk-Fundamentals Premium Access
Questions 32

Which of the following is the BEST reason for an enterprise to avoid an absolute prohibition on risk?

Options:
A.

It may not be understood by executive management.

B.

It may lead to ineffective use of resources.

C.

It may not provide adequate support for budget increases.

Questions 33

Which of the following is an example of a preventive control?

Options:
A.

File integrity monitoring (FIM) on personal database stores

B.

Air conditioning systems with excess capacity to permit failure of certain components

C.

Data management checks on sensitive data processing procedures

Questions 34

What is the basis for determining the sensitivity of an IT asset?

Options:
A.

Potential damage to the business due to unauthorized disclosure

B.

Cost to replace the asset if lost, damaged, or deemed obsolete

C.

Importance of the asset to the business

Questions 35

An enterprise has initiated a project to implement a risk-mitigating control. Which of the following would provide senior management with the MOST useful information on the project's status?

Options:
A.

Risk register

B.

Risk heat map

C.

Risk report