Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 1766 discussion

Actual exam question from Isaca's CRISC
Question #: 1766
Topic #: 1
[All CRISC Questions]

A large organization recently restructured the IT department and has decided to outsource certain functions. What action should the control owners in the IT department take?

  • A. Determine whether risk responses still effectively address risk.
  • B. Conduct risk classification for associated IT controls.
  • C. Perform vulnerability and threat assessments.
  • D. Analyze and update IT control assessments.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Sara98
1 month, 2 weeks ago
Selected Answer: A
When functions are outsourced, the risk landscape changes, and it is important for control owners to assess whether the current risk responses are still appropriate for the new structure and outsourcing arrangements. Outsourcing can introduce new risks or change the nature of existing ones, so ensuring that the risk responses (controls, processes, etc.) are still effective is a critical first step
upvoted 2 times
...
lferolm
4 months, 2 weeks ago
Selected Answer: A
first Determine whether risk responses still effectively address risk, if they are not addressing the risk, then Analyze and update IT control assessments.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...