Questions & Answers (Grade A+)
MOST essential for a risk management program to be effective? -
correct answer ✅New risk detection
BEST assist a risk practitioner when addressing risk within the
supply chain lifecycle? - correct answer ✅Identification and
understanding of the legal requirements relevant to the supply
chain will assist the risk practitioner to identify, assess and monitor
risk on an ongoing basis.
The Delphi technique - correct answer ✅polling or information
gathering is done either anonymously or privately between the
interviewer and interviewee.
BEST way to ensure that an accurate risk register is maintained over
time? - correct answer ✅Publish the risk register centrally with
workflow features that periodically poll risk assessors.
GREATEST risk of a policy that defines data and system ownership
inadequately? - correct answer ✅Users may have unauthorized
access to originate, modify or delete data
, ISACA IT Risk Identification Exam
Questions & Answers (Grade A+)
BEST method to ensure the overall effectiveness of a risk
management program? - correct answer ✅Effective risk
management requires participation, support and acceptance by all
applicable members of the enterprise, beginning with executives.
Personnel must understand their responsibilities, receive training
on how to fulfill their roles, exercise active judgment and take
appropriate action.
MOST significant threat to a project? - correct answer ✅Projects
exist to deliver specific outcomes as stated in requirements. If
requirements are misunderstood, a project can be successful in
terms of its internal criteria, scheduling and budget, yet result in a
business failure because the project will not have delivered
business value.
A new data protection regulation directly affects an organization.
What information should the risk practitioner gather to BEST
ensure compliance? - correct answer ✅Risk scenarios should
indicate potential effects of noncompliance with the new regulation
and guide management in evaluating whether the cost of
compliance outweighs the cost of noncompliance and if this is in
alignment with the organization's risk tolerance. Understanding the
impact of compliance versus noncompliance will inform which