00:00

QUESTION 11

- (Exam Topic 3)
Which of the following provides the MOST useful information when determining if a specific control should be implemented?

Correct Answer: B

QUESTION 12

- (Exam Topic 1)
Malware has recently affected an organization. The MOST effective way to resolve this situation and define a comprehensive risk treatment plan would be to perform:

Correct Answer: C

QUESTION 13

- (Exam Topic 3)
The design of procedures to prevent fraudulent transactions within an enterprise resource planning (ERP) system should be based on:

Correct Answer: D

QUESTION 14

- (Exam Topic 3)
Which of the following is the GREATEST benefit for an organization with a strong risk awareness culture?

Correct Answer: D

QUESTION 15

- (Exam Topic 3)
An application runs a scheduled job that compiles financial data from multiple business systems and updates the financial reporting system. If this job runs too long, it can delay financial reporting. Which of the following is the risk practitioner's BEST recommendation?

Correct Answer: C