
Certified in Risk and Information Systems Control
Domain 3Objective 4
Risk Monitoring and Reporting CRISC Practice Questions (Page 5)
Part of the Domain 3: Risk Response and Reporting domain, which accounts for 32% of the CRISC exam.
44questions here
9free pages
14concepts
32%of the exam
Questions 21–25
- 21
When reporting an emerging risk to stakeholders, what is the most important consideration?
Select an answer first - 22
A risk manager is preparing a heatmap for the board. The board has expressed concern that the heatmap is too complex and wants to focus on the most critical risks. The risk manager has identified 25 risks, but the board wants to see only those that require immediate attention. Which approach is most appropriate?
Select an answer first - 23
A company wants to implement a dashboard for real-time risk monitoring. The data sources include internal systems with different update frequencies, some updating every minute and others updating daily. The risk team is concerned that the dashboard may show inconsistent data. Which approach is most appropriate?
Select an answer first - 24
A company has a mature control environment but is facing a rapidly changing regulatory landscape. Management wants to ensure that existing controls remain effective and that emerging regulatory risks are identified early. The company has limited resources and cannot conduct frequent full audits. Which approach best balances these needs?
Select an answer first - 25
After aggregating risk data, what is the primary goal of the analysis phase?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CRISC” is a trademark of its owner, used for identification only.