VIP Exclusive

CRISC VIP Certification Exam

CRISC — The CRISC (Certified in Risk and Information Systems Control) exam is issued by ISACA and consists of 150 questions across 4 hours, scored on a scale of 200–800 with a passing score of 450; it covers four domains: Governance (26%), IT Risk Assessment (20%), Risk Response and Reporting (32%), and Information Technology and Security (22%).

28
Questions
240m
Time Limit
56.00%
To Pass
Question 1 of 28👑 VIP

A newly appointed Chief Risk Officer at a mid-sized financial institution discovers that the enterprise risk framework was designed primarily around operational risk and does not account for technology-driven risks introduced by the organization's recent cloud migration. The board has requested a briefing within 30 days. Which of the following actions should the CRO take FIRST to align IT risk with the enterprise risk framework? A) Commission an immediate external penetration test of the cloud environment B) Identify and map existing IT risk categories to the enterprise risk taxonomy C) Suspend cloud operations until the risk framework is updated D) Engage a consulting firm to develop a new standalone IT risk framework

Questions 2–28 and full explanations are VIP-exclusive.