exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 1492 discussion

Actual exam question from Isaca's CRISC
Question #: 1492
Topic #: 1
[All CRISC Questions]

A risk practitioner notes that the number of unauthorized disclosures of confidential data has been increasing. Which of the following is MOST important to examine for determining the root cause?

  • A. The volume of data loss prevention (DLP) alerts
  • B. Completeness of data classification schema
  • C. Scope of security awareness training
  • D. Updated regulations related to data protection
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
faed87a
1 month ago
Selected Answer: B
The data classification schema is critical for ensuring that confidential data is properly identified, labeled, and handled in accordance with its sensitivity. If the schema is incomplete or not properly enforced, sensitive data might not be adequately protected, leading to unauthorized disclosures. Examining whether the classification schema is comprehensive and correctly applied can help identify gaps in the organization's ability to protect confidential information.
upvoted 1 times
...
K5000ism
10 months, 1 week ago
Selected Answer: B
B. Completeness of data classification schema A data classification schema defines how different types of data are categorized based on their sensitivity and confidentiality. If there is an increase in unauthorized disclosures, it may indicate weaknesses in how data is classified and handled. Examining the completeness of the data classification schema involves assessing whether all types of sensitive data are properly identified, labeled, and protected according to their level of confidentiality.
upvoted 2 times
...
Kennethlim79
11 months, 1 week ago
Selected Answer: C
The most important factor to examine for determining the root cause of an increase in unauthorized disclosures of confidential data is the Scope of security awareness training (Option C). This is because security awareness training is crucial for ensuring that employees understand their responsibilities in protecting confidential data. If the training is not comprehensive or does not reach all employees, it could lead to an increase in unauthorized disclosures. However, all the options mentioned could potentially contribute to the issue, and the most significant factor can vary depending on the specific circumstances and context.
upvoted 1 times
...
Cclantic
1 year ago
why not a?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago