00:00

QUESTION 96

- (Exam Topic 2)
Which of The following is the PRIMARY consideration when establishing an organization's risk management methodology?

Correct Answer: A

QUESTION 97

- (Exam Topic 4)
A poster has been displayed in a data center that reads. "Anyone caught taking photographs in the data center may be subject to disciplinary action." Which of the following control types has been implemented?

Correct Answer: A

QUESTION 98

- (Exam Topic 4)
A segregation of duties control was found to be ineffective because it did not account for all applicable functions when evaluating access. Who is responsible for ensuring the control is designed to effectively address risk?

Correct Answer: B

QUESTION 99

- (Exam Topic 3)
Several network user accounts were recently created without the required management approvals. Which of the following would be the risk practitioner's BEST recommendation to address this situation?

Correct Answer: C

QUESTION 100

- (Exam Topic 3)
To reduce the risk introduced when conducting penetration tests, the BEST mitigating control would be to:

Correct Answer: A