Question 241

An organization has four different projects competing for funding to reduce overall IT risk. Which project should management defer?
  • Question 242

    Which of the following represents lack of adequate controls?
  • Question 243

    A chief information officer (CIO) has identified risk associated with shadow systems being maintained by business units to address specific functionality gaps in the organization's enterprise resource planning (ERP) system. What is the BEST way to reduce this risk going forward?
  • Question 244

    Which of the following vulnerability assessment software can check for weak passwords on the network?
  • Question 245

    An organization has outsourced its lease payment process to a service provider who lacks evidence of compliance with a necessary regulatory standard. Which risk treatment was adopted by the organization?