CRISC • Practice Test 1 — 30 Questions
Free CRISC practice test 1 — 30 questions with explanations. No signup required.
During a risk assessment for a critical financial application, the IT risk manager identifies a vulnerability in the application's authentication module. The exploit would require authenticated access. Which risk rating is most appropriate if the vulnerability has a CVSS base score of 9.0, but the application is behind a strong firewall and requires two-factor authentication?
Choose an answer to begin — your selection is scored in the full session.
30 questions · instant feedback and full explanations after every question.