Question 776

Due to a change in business processes, an identified risk scenario no longer requires mitigation. Which of the following is the MOST important reason the risk should remain in the risk register?
  • Question 777

    Which of the following should be included in a risk assessment report to BEST facilitate senior management's understanding of the results?
  • Question 778

    The risk associated with data loss from a website which contains sensitive customer information is BEST owned by:
  • Question 779

    An organization has recently hired a large number of part-time employees. During the annual audit, it was discovered that many user IDs and passwords were documented in procedure manuals for use by the part-time employees. Which of the following BEST describes this situation?
  • Question 780

    An IT organization is replacing the customer relationship management (CRM) system. Who should own the risk associated with customer data leakage caused by insufficient IT security controls for the new system?