Isaca Certified in Risk and Information Systems Control CRISC Question # 420 Topic 43 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 420 Topic 43 Discussion

CRISC Exam Topic 43 Question 420 Discussion:
Question #: 420
Topic #: 43

During the risk assessment of an organization that processes credit cards, a number of existing controls have been found to be ineffective and do not meet industry standards. The overall control environment may still be effective if:


A.

compensating controls are in place.


B.

a control mitigation plan is in place.


C.

risk management is effective.


D.

residual risk is accepted.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.