
Certified in the Governance of Enterprise IT
Domain 4Objective 7
Risk Assessment Methods CGEIT Practice Questions (Page 4)
Part of the Risk Optimization domain, which accounts for 19% of the CGEIT exam.
30questions here
6free pages
8concepts
19%of the exam
Questions 16–20
- 16
Which of the following best describes how risk assessment results should be presented to senior management?
Select an answer first - 17
A non-profit organization is conducting a risk assessment for its donor database. The risk team has limited expertise in statistical analysis and no historical incident data. The board wants a simple, understandable output that can be used to explain risks to stakeholders. Which risk assessment method is most appropriate?
Select an answer first - 18
What is the first step in conducting a structured risk assessment?
Select an answer first - 19
Which risk assessment standard is published by the U.S. National Institute of Standards and Technology (NIST) and provides detailed guidance for conducting risk assessments of information systems?
Select an answer first - 20
Which activity is part of the risk analysis phase of a risk assessment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CGEIT” is a trademark of its owner, used for identification only.