C. frequency and magnitude of loss.
The main goal of the risk analysis process is to determine the frequency and magnitude of potential loss events. This involves assessing the likelihood (frequency) of specific risks occurring and the potential impact (magnitude) they could have on the organization. Risk analysis considers various factors, including threats, vulnerabilities, and existing controls, to evaluate the overall risk exposure and prioritize risk management efforts. This analysis helps organizations make informed decisions about how to manage and mitigate their risks effectively.
Risk analysis according to ISACA, includes assessment of consequences, assessment of incident likelihoods, determination of level of risk;
risk identification includes the identification of assets, threats, vulnerabilities, existing controls and consequences (page 53, CRISC review manual, 7th edition)
Risk analysis main objective is the modeling of various threats againts assets estimating probability of a loss event and impact. Threats and vulnerabilities are identified in the 'identification' phase.
C is correct via crisc manual
Risk analysis— 1. A process by which frequency and magnitude of IT risk scenarios are estimated.
2. The initial steps of risk management: analyzing the value of assets to the business, identifying threats to those assets and evaluating how vulnerable each asset is to those threats
D is correct - CRISC Manual Page 27 - Task statement T1.2 says - Identify potential threats and vulnerabilities to the organization’s people, processes and technology to enable IT risk analysis.
Impact is determined via risk assessment that comes after the analysis. Answer D is correct.
upvoted 3 times
...
...
This section is not available anymore. Please use the main Exam Page.CRISC Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Calvinc
Highly Voted 3 years, 11 months agoStaanlee
Most Recent 10 months, 2 weeks agoCbtL
1 year, 3 months agojseeker
1 year, 4 months agojohn_boogieman
1 year, 6 months agoSuchib
1 year, 7 months agoCeecil1959
2 years, 4 months agoCeecil1959
2 years, 3 months agotsangckl
2 years, 4 months agoAllaAlla
2 years, 5 months agoCeecil1959
2 years, 4 months agoRaj1510
2 years, 6 months agoRajaji
3 years agoCbtL
1 year, 3 months agoCL888
3 years, 11 months agoRooks
3 years, 10 months ago