Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified in Risk and Information Systems Control

Domain 4Objective 4

Security and Privacy CRISC Practice Questions (Page 4)

Part of the Domain 4: Technology and Security domain, which accounts for 20% of the CRISC exam.

32questions here
7free pages
8concepts
20%of the exam

Questions 16–20

  1. 16foundation · easy

    What is the first step in developing an effective security training program?

    Select an answer first
  2. 17application · medium

    A user requests access to all personal data that a company holds about them. Under GDPR, what is this right called, and what must the company do?

    Select an answer first
  3. 18foundation · easy

    What is a key implication of the California Consumer Privacy Act (CCPA) for organizations that do business in California?

    Select an answer first
  4. 19application · medium

    A system administrator is setting up access controls for a new application. They want to ensure that users are who they claim to be and that they can only perform actions they are permitted to do. Which two security concepts are being implemented?

    Select an answer first
  5. 20foundation · easy

    Which data protection principle requires that an organization be able to demonstrate how it complies with data protection requirements?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CRISC” is a trademark of its owner, used for identification only.