exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 691 discussion

Actual exam question from Isaca's CRISC
Question #: 691
Topic #: 1
[All CRISC Questions]

Which of the following is the BEST method for assessing control effectiveness?

  • A. Ad hoc reporting
  • B. Predictive analytics
  • C. Continuous monitoring
  • D. Control self-assessment
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
NeilKK
Highly Voted 3 years, 8 months ago
The answer should be C.
upvoted 9 times
CL888
3 years, 8 months ago
I agree
upvoted 5 times
...
...
SuperMax
Most Recent 5 months, 1 week ago
Selected Answer: C
The BEST method for assessing control effectiveness among the options provided is C. Continuous monitoring. Continuous monitoring involves the ongoing and automated assessment of controls and their effectiveness. It allows for real-time or near-real-time monitoring of systems, processes, and security controls to identify and respond to issues as they occur. This proactive and dynamic approach is generally more effective than ad hoc reporting, predictive analytics, or control self-assessment, as it provides a continuous feedback loop to help organizations detect and address control weaknesses and risks in a timely manner.
upvoted 1 times
...
CbtL
1 year ago
Selected Answer: C
Agree it is C.
upvoted 1 times
...
john_boogieman
1 year, 1 month ago
Selected Answer: C
Agree.
upvoted 2 times
...
Ceecil1959
2 years ago
B: seems correct if I go by this analysis How do you measure effectiveness of control? 4 Steps to Measure Controls' Effectiveness with Cyber Risk Quantification Identify current risk exposure. Map the control being considered to the FAIR Model. Perform a future state analysis, evaluating the effectiveness of the control. Compare the current state vs. future state to perform a cost-benefit analysis.
upvoted 1 times
Ceecil1959
1 year, 11 months ago
C is correct. I think it's in the QAE
upvoted 3 times
...
...
Raj1510
2 years, 2 months ago
echo C
upvoted 2 times
...
MusMus
2 years, 3 months ago
Selected Answer: C
Should be C
upvoted 2 times
...
aselunar
2 years, 10 months ago
Also see R3-76
upvoted 2 times
...
aselunar
2 years, 10 months ago
I agree it is C. See R2-26
upvoted 2 times
...
Odenkyem
2 years, 11 months ago
Check CRISC MANUAL 6TH EDITIION ,PAGE 173 FOR THE DEFINITION OF CONTROL-RISK SELF-ASSESSMENT.
upvoted 2 times
...
Calvinc
3 years, 7 months ago
It should be continuous monitoring
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago