
EC-CouncilCertified Chief Information Security Officer
Domain 1Objective 4
Risk Management CCISO Practice Questions (Page 4)
Part of the Governance, Risk, and Compliance domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 56 practice questions to prepare you well beyond it. (estimate)
56questions here
12free pages
10concepts
Questions 16–20
- 16
During the risk identification process, which activity is most directly associated with identifying potential risks to an organization's assets?
Select an answer first - 17
Which statement best describes the relationship between risk management and the broader governance, risk, and compliance (GRC) framework?
Select an answer first - 18
A company's risk assessment identifies two risks: Risk A has a 20% likelihood of causing a $5 million loss, and Risk B has a 5% likelihood of causing a $50 million loss. The company's risk appetite is defined as not exceeding $2 million in expected annual loss for any single risk. Which risk(s) exceed the company's risk appetite?
Select an answer first - 19
A government agency is required to implement a risk management framework that aligns with federal guidelines. The agency currently uses ISO 31000 as its internal framework, but the federal regulator requires compliance with a specific risk management standard that is more prescriptive. The CISO must reconcile the two frameworks. Which approach is most appropriate?
Select an answer first - 20
Which of the following is a widely recognized international standard for risk management?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.