CRISC • Practice Exam 1 — 20 Questions
Free CRISC practice exam 1 — 20 questions with explanations. No signup required.
During a risk assessment for a critical financial application, the IT risk manager identifies a vulnerability in the application's authentication module. The exploit would require authenticated access. Which risk rating is most appropriate if the vulnerability has a CVSS base score of 9.0, but the application is behind a strong firewall and requires two-factor authentication?
Choose an answer to begin — your selection is scored in the full session.
20 questions · instant feedback and full explanations after every question.