exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 469 discussion

Actual exam question from Isaca's CRISC
Question #: 469
Topic #: 1
[All CRISC Questions]

Which of the following is the FIRST step in managing the security risk associated with wearable technology in the workplace?

  • A. Develop risk awareness training
  • B. Monitor employee usage
  • C. Identify the potential risk
  • D. Assess the potential risk
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
soap
Highly Voted 3 years, 10 months ago
This question implies that we are managing the risk, so the risk has been identified and assessed.
upvoted 9 times
...
SuperMax
Most Recent 9 months ago
Selected Answer: C
C. Identify the potential risk Before you can assess and manage the risks associated with wearable technology, you need to identify what those risks are. Once you've identified the potential risks, you can then move on to assessing them, monitoring employee usage, and developing risk awareness training
upvoted 1 times
...
01010100
11 months, 3 weeks ago
Selected Answer: C
C. Identify the potential risk The first step in managing the security risk associated with wearable technology in the workplace is to identify the potential risk. Before you can assess the potential risk, you need to first identify what the risks are. Once you've identified the potential risks, you can then proceed to assess these risks, develop risk management strategies (which may include risk awareness training), and monitor the effectiveness of these strategies (which could involve monitoring employee usage).
upvoted 1 times
...
Buzzkill_555
1 year, 2 months ago
Selected Answer: D
Feel like the risk needs to be assessed before training can be developed
upvoted 1 times
...
john_boogieman
1 year, 4 months ago
Selected Answer: C
Agree.
upvoted 1 times
...
Suchib
1 year, 6 months ago
Selected Answer: C
Without identification of risk how to proceed.
upvoted 1 times
...
Raj1510
2 years, 6 months ago
C should be right. without identification other process would not make sense.
upvoted 1 times
...
Anon530
3 years, 3 months ago
I think the answer should be C. You need to identify the risk before you can manage it. Also - how can you develop an awareness program if you don't identify the rik first.
upvoted 2 times
...
Rooks
3 years, 10 months ago
I think the answer should be D as the risk needs to be assessed first and then plan on offering and then comes the training...
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...