
Certified in Risk and Information Systems Control
Domain 3Objective 4
Risk Monitoring and Reporting CRISC Practice Questions (Page 1)
Part of the Domain 3: Risk Response and Reporting domain, which accounts for 32% of the CRISC exam.
44questions here
9free pages
14concepts
32%of the exam
Questions 1–5
- 1
Which of the following is a typical component of a risk scorecard?
Select an answer first - 2
A retail company collects data on customer complaints, system downtime, and employee turnover from different departments. The risk team wants to identify whether these factors are correlated with a decline in sales. The data is in different formats and stored in separate systems. What is the most appropriate first step?
Select an answer first - 3
A risk analyst receives a report of security incidents from an automated system. What is the most important first step to ensure the data is suitable for risk analysis?
Select an answer first - 4
Which method is most appropriate for collecting risk-related data from employees who perform day-to-day operational processes?
Select an answer first - 5
A risk analyst is aggregating data from multiple business units to produce a quarterly risk report. The analyst notices that one business unit's data on control failures is significantly lower than in previous quarters, while other units show consistent trends. The analyst suspects a data quality issue. Which action is most appropriate to validate the data?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CRISC” is a trademark of its owner, used for identification only.