exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 216 discussion

Actual exam question from Isaca's CRISC
Question #: 216
Topic #: 1
[All CRISC Questions]

How residual risk can be determined?

  • A. By determining remaining vulnerabilities after countermeasures are in place.
  • B. By transferring all risks.
  • C. By threat analysis
  • D. By risk assessment
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Jen991
7 months, 2 weeks ago
Selected Answer: A
Answer should be A
upvoted 1 times
...
AaronS1990
10 months, 2 weeks ago
Selected Answer: A
A 100%. It's pretty much the word-for-word definition of residual risk
upvoted 1 times
...
Kennethlim79
11 months ago
The correct answer is A. By determining remaining vulnerabilities after countermeasures are in place. Residual risk is the risk that remains after countermeasures have been implemented to reduce or eliminate a risk. It is the portion of the risk that cannot be controlled or mitigated.
upvoted 1 times
...
SuperMax
1 year ago
Selected Answer: A
A. By determining remaining vulnerabilities after countermeasures are in place. Residual risk is the risk that remains after security countermeasures have been implemented. It represents the level of risk that an organization or system still faces even with the security controls and measures in place. To determine the residual risk, you assess the vulnerabilities that are still present or partially mitigated after implementing security measures, and you evaluate the potential impact of these remaining vulnerabilities. This helps in understanding the level of risk that the organization or system still needs to manage and be aware of.
upvoted 2 times
...
eblue
1 year, 2 months ago
Residual risk refers to the level of risk that remains after risk mitigation measures have been implemented. Determining residual risk involves assessing the remaining risk exposure that an organization or system faces despite the controls and safeguards that have been put in place.
upvoted 1 times
...
mih
1 year, 2 months ago
Selected Answer: A
Answer should be A.
upvoted 1 times
...
ldl
1 year, 7 months ago
Selected Answer: A
answer should be A as risk remaining after security measures have been applied is the definition of residual Risk
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago