exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 948 discussion

Actual exam question from Isaca's CRISC
Question #: 948
Topic #: 1
[All CRISC Questions]

An organization is developing a security risk awareness training program for the IT help desk and has asked the risk practitioner for suggestions. In addition to technical topics, which of the following is MOST important to recommend be included in the training?

  • A. Identity verification procedures
  • B. Incident reporting procedures
  • C. Security policy review
  • D. Password selection options
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mynk29
1 month, 2 weeks ago
Selected Answer: A
Social engineering is most prevalent in targeting helpdesk where someone masquerading as an exec can ask for password resets.. identity verification is the most important step in reducing the these type of attacks.
upvoted 1 times
...
CbtL
2 months, 3 weeks ago
Selected Answer: B
Can see B. In the real world, though, have spent the past 15 years enforcing that security awareness includes acceptance and understanding of the information security policy. There must be some nuance I am missing.
upvoted 1 times
...
john_boogieman
4 months, 3 weeks ago
Selected Answer: B
Agree.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago