Isaca Certified in Risk and Information Systems Control CRISC Question # 145 Topic 15 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 145 Topic 15 Discussion

CRISC Exam Topic 15 Question 145 Discussion:
Question #: 145
Topic #: 15

What should a risk practitioner do FIRST when a shadow IT application is identified in a business owner's business impact analysis (BIA)?


A.

Include the application in the business continuity plan (BCP).


B.

Determine the business purpose of the application.


C.

Segregate the application from the network.


D.

Report the finding to management.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.