CRISC Exam Question 281

An organization has implemented a preventive control to lock user accounts after three unsuccessful login attempts. This practice has been proven to be unproductive, and a change in the control threshold value has been recommended. Who should authorize changing this threshold?
  • CRISC Exam Question 282

    Which of the following is the MOST important key performance indicator (KPI) to monitor the effectiveness of disaster recovery processes?
  • CRISC Exam Question 283

    When of the following 15 MOST important when developing a business case for a proposed security investment?
  • CRISC Exam Question 284

    Which of the following should be the FIRST consideration when a business unit wants to use personal information for a purpose other than for which it was originally collected?
  • CRISC Exam Question 285

    Which of the following is the BEST key performance indicator (KPI) for determining how well an IT policy is aligned to business requirements?