CRISC Risk Response and Mitigation • Set 6
CRISC Risk Response and Mitigation Practice Test 6 — 15 questions with explanations. Free, no signup.
A financial institution is implementing a new online banking platform. The risk assessment identified that the platform will handle sensitive customer data and must comply with GDPR and local banking regulations. The project team proposes encrypting all data at rest and in transit, implementing multi-factor authentication (MFA), and conducting quarterly penetration tests. However, the risk owner is concerned about the residual risk of a sophisticated phishing attack that could bypass MFA. The board has a low risk appetite. What is the BEST way to address this residual risk?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.