Review and correct, reason:
Internal and external risk reports should be the primary input when designing IT controls. These reports help identify the potential risks that may affect the organization's IT environment and provide insight into the types of controls that can be implemented to mitigate those risks. Control self-assessments can also provide valuable information, but they are typically more focused on evaluating the effectiveness of existing controls rather than designing new controls.
This section is not available anymore. Please use the main Exam Page.CRISC Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
CbtL
9 months, 2 weeks agojohn_boogieman
11 months agojohn_boogieman
11 months, 4 weeks agoSkipC
1 year, 1 month ago