Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Isaca Certified in Risk and Information Systems Control CRISC Question # 1 Topic 1 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 1 Topic 1 Discussion

CRISC Exam Topic 1 Question 1 Discussion:
Question #: 1
Topic #: 1

A risk practitioner has observed that risk owners have approved a high number of exceptions to the information security policy. Which of the following should be the risk practitioner's GREATEST concern?


A.

Security policies are being reviewed infrequently.


B.

Controls are not operating efficiently.


C.

Vulnerabilities are not being mitigated


D.

Aggregate risk is approaching the tolerance threshold


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.