Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam CRISC topic 1 question 203 discussion

Actual exam question from Isaca's CRISC
Question #: 203
Topic #: 1
[All CRISC Questions]

Who is at the BEST authority to develop the priorities and identify what risks and impacts would occur if there were loss of the organization's private information?

  • A. External regulatory agencies
  • B. Internal auditor
  • C. Business process owners
  • D. Security management
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
6ada4e1
2 months, 2 weeks ago
Selected Answer: C
La opcion c es la mas probable para mi
upvoted 1 times
...
olloe
4 months, 2 weeks ago
when are people writing the CRISC exam
upvoted 1 times
...
Kennethlim79
4 months, 3 weeks ago
I would choose C) Business process owners as the best authority to develop priorities and identify risks and impacts associated with loss of private information. The direct involvement in impacted operations gives them an excellent perspective.
upvoted 1 times
...
SuperMax
6 months, 1 week ago
Selected Answer: D
The best authority to develop the priorities and identify what risks and impacts would occur if there were a loss of the organization's private information is typically D. Security management. Security management, including the Chief Information Security Officer (CISO) or the security team, is responsible for assessing and managing information security risks within an organization. They have the expertise and understanding of the organization's security landscape and are directly responsible for protecting private information from various threats. They are well-positioned to understand the potential risks and impacts associated with a loss of private information and can develop priorities and strategies to mitigate these risks effectively.
upvoted 1 times
SuperMax
6 months, 1 week ago
While the other options (A. External regulatory agencies, B. Internal auditor, C. Business process owners) may play important roles in an organization's security and risk management, the security management team is typically the most knowledgeable and directly responsible for addressing information security risks. However, it's essential to have a collaborative approach involving various stakeholders, including business process owners, internal auditors, and compliance with external regulatory agencies, to ensure a comprehensive and effective security strategy.
upvoted 1 times
...
...
amirnova
8 months ago
to identify and manage risk is responsibility of first line of defense, from the answers options, only C is the first line of defense.
upvoted 1 times
...
signon2000
8 months, 3 weeks ago
Are the responses to this test valid? Seeing too many wrong answers?
upvoted 1 times
...
ldl
1 year ago
Selected Answer: C
Business Process Owners
upvoted 3 times
...
Julianleehk
1 year, 1 month ago
should be C
upvoted 3 times
...
Suchib
1 year, 4 months ago
Will go for C. They have the authority to decide the priority and impact and select the response in accordance.
upvoted 3 times
...
solu1010
2 years, 3 months ago
This answer is not in keeping with the ISACA view that the process owner (business) classifies and outlines the controls required.
upvoted 2 times
...
ARAMiS
2 years, 10 months ago
Answer must be C
upvoted 2 times
...
thungthinh
3 years, 1 month ago
authority must be on hand of senior management.
upvoted 1 times
...
Shaws1
3 years, 1 month ago
Business Process Owners
upvoted 4 times
...
jfarrelly
3 years, 2 months ago
This answer is not in keeping with the ISACA view that the process owner (business) classifies and outlines the controls required.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...