Isaca Certified in Risk and Information Systems Control CRISC Question # 300 Topic 31 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 300 Topic 31 Discussion

CRISC Exam Topic 31 Question 300 Discussion:
Question #: 300
Topic #: 31

Which of the following would be the BEST way for a risk practitioner to validate the effectiveness of a patching program?


A.

Conduct penetration testing.


B.

Interview IT operations personnel.


C.

Conduct vulnerability scans.


D.

Review change control board documentation.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.