
Certified in Risk and Information Systems Control
Domain 2Objective 7
Risk Register CRISC Practice Questions (Page 1)
Part of the Domain 2: Risk Assessment domain, which accounts for 22% of the CRISC exam.
34questions here
7free pages
7concepts
22%of the exam
Questions 1–5
- 1
Which of the following best describes the role of a risk register in the risk management process?
Select an answer first - 2
A company has assigned a risk owner for each risk in the register, but the register is not being updated consistently. The risk owners say they do not know when to update it. What is the best way to clarify accountability?
Select an answer first - 3
A company has a risk register that is not integrated with its incident management process. When an incident occurs, the related risk is not updated in the register. This has led to outdated risk levels and missed opportunities to improve controls. What is the most effective way to integrate the two processes?
Select an answer first - 4
A risk assessment identifies a new risk that requires a mitigation plan. The risk owner has proposed a control. How should the risk register be used to integrate this into the risk management process?
Select an answer first - 5
A risk that was previously rated as low has increased in likelihood due to new threat intelligence. The risk owner has not updated the register. What is the most appropriate action?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CRISC” is a trademark of its owner, used for identification only.