exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 829 discussion

Actual exam question from Isaca's CRISC
Question #: 829
Topic #: 1
[All CRISC Questions]

Which of the following is MOST important to have in place to ensure the effectiveness of risk and security metrics reporting?

  • A. Organizational reporting process.
  • B. Incident reporting procedures.
  • C. Regularly scheduled audits.
  • D. Incident management policy.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
kaixin
1 week, 6 days ago
Selected Answer: A
I won't choose C because Audit findings are only part of the security metrics to be reported, there are broader range of risk reporting need to be covered by the organisational reporting process
upvoted 1 times
...
01010100
6 months, 3 weeks ago
Selected Answer: A
A. Organizational reporting process. For risk and security metrics to be effectively reported and understood by stakeholders, it's crucial to have an established organizational reporting process. This process provides a structured and consistent manner to convey information, ensuring that key stakeholders receive relevant data in a timely and comprehensible manner, aiding in informed decision-making. While the other options are relevant to various aspects of risk management and security, they don't directly ensure the effectiveness of metrics reporting as the organizational reporting process does.
upvoted 2 times
...
eblue
7 months, 2 weeks ago
A. Organizational reporting process. Having an organized reporting process ensures that there's a systematic, consistent, and repeatable method to capture, analyze, and present risk and security metrics. This contributes directly to the effectiveness of the metrics reporting, ensuring that data is collected and reported in a manner that facilitates understanding and decision-making.
upvoted 1 times
...
CbtL
1 year ago
Selected Answer: C
Audit is assurance, right? Going with C.
upvoted 1 times
...
john_boogieman
1 year, 3 months ago
Selected Answer: C
The best way to verify a control is by testing or auditing it.
upvoted 2 times
...
Suchib
1 year, 4 months ago
How to check effectiveness of control, through audit only, rest are control inplace. Hence C.
upvoted 2 times
...
Ceecil1959
2 years, 1 month ago
I think that B is correct. ‍How many times has an attacker breached your information assets or networks?
upvoted 1 times
...
Raj1510
2 years, 3 months ago
c only I can think of , no other option close to the right choice
upvoted 3 times
...
VirginiaJessamine
2 years, 3 months ago
C i think ninjas
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago