Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Isaca Certified in Risk and Information Systems Control CRISC Question # 419 Topic 42 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 419 Topic 42 Discussion

CRISC Exam Topic 42 Question 419 Discussion:
Question #: 419
Topic #: 42

A risk assessment has been completed on an application and reported to the application owner. The report includes validated vulnerability findings that require mitigation. Which of the following should be the NEXT step?


A.

Report the findings to executive management to enable treatment decisions.


B.

Reassess each vulnerability to evaluate the risk profile of the application.


C.

Conduct a penetration test to determine how to mitigate the vulnerabilities.


D.

Prepare a risk response that is aligned to the organization ' s risk tolerance.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.