Question 251

An organization learns of a new ransomware attack affecting organizations worldwide. Which of the following should be done FIRST to reduce the likelihood of infection from the attack?
  • Question 252

    After a high-profile systems breach at an organization s key vendor, the vendor has implemented additional mitigating controls. The vendor has voluntarily shared the following set of assessments:
    After a high-profile systems breach at an organization s key vendor, the vendor has implemented additional mitigating controls. The vendor has voluntarily shared the following set of assessments:
    Which of the assessments provides the MOST reliable input to evaluate residual risk in the vendor's control environment?
  • Question 253

    Which of the following risk register updates is MOST important for senior management to review?
  • Question 254

    To help ensure all applicable risk scenarios are incorporated into the risk register, it is MOST important to review the:
  • Question 255

    Which of the following approaches BEST identifies information systems control deficiencies?