Question 211

After a high-profile systems breach at an organization s key vendor, the vendor has implemented additional mitigating controls. The vendor has voluntarily shared the following set of assessments:
After a high-profile systems breach at an organization s key vendor, the vendor has implemented additional mitigating controls. The vendor has voluntarily shared the following set of assessments:
Which of the assessments provides the MOST reliable input to evaluate residual risk in the vendor's control environment?
  • Question 212

    Which of the following is MOST important to include in a risk assessment of an emerging technology?
  • Question 213

    A global organization is planning to collect customer behavior data through social media advertising. Which of the following is the MOST important business risk to be considered?
  • Question 214

    From a risk management perspective, the PRIMARY objective of using maturity models is to enable:
  • Question 215

    An IT risk practitioner has been asked to regularly report on the overall status and effectiveness of the IT risk management program. Which of the following is MOST useful for this purpose?