exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 1252 discussion

Actual exam question from Isaca's CRISC
Question #: 1252
Topic #: 1
[All CRISC Questions]

Which of the following provides the MOST comprehensive information when developing a risk profile for a system?

  • A. Risk assessment results
  • B. Key performance indicators (KPIs)
  • C. A mapping of resources to business processes
  • D. Results of a business impact analysis (BIA)
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
K5000ism
10 months ago
Selected Answer: A
Risk assessment
upvoted 1 times
...
mynk29
1 year, 5 months ago
Selected Answer: A
"The risk profile is based on the overall risk posture of the organization reflected in its attentiveness to monitoring the effectiveness of controls A"
upvoted 1 times
...
CbtL
1 year, 5 months ago
Selected Answer: A
Agree with A.
upvoted 1 times
...
Koulyo
1 year, 6 months ago
I go with BIA, D. this will include the resources and the analysis.
upvoted 1 times
...
john_boogieman
1 year, 8 months ago
Selected Answer: A
When developing a risk profile for a system, both risk assessment results and a mapping of resources to business processes can provide valuable information, but risk assessment results typically provide the most comprehensive information. Risk assessment is a systematic process of identifying, analyzing, and evaluating potential risks associated with a system, including threats, vulnerabilities, and potential impacts. Risk assessment results provide a detailed understanding of the potential risks to a system and can help prioritize risk mitigation efforts. On the other hand, mapping resources to business processes involves identifying the assets and resources used by a system and the business processes that rely on them. This mapping can help identify critical resources and processes, which can inform risk assessment and risk mitigation efforts. However, this information alone may not provide a comprehensive understanding of the potential risks to a system.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago