ISO 31000:2018 - Risk Treatment and Control Professional Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A multinational logistics firm, \"Global Freight Forwarders,\" has identified a significant risk associated with the potential disruption of its primary cloud-based inventory management system due to cyberattacks. Following a thorough risk assessment, they implemented a multi-layered security protocol, including advanced firewalls, intrusion detection systems, and regular data backups. Despite these measures, a recent internal audit revealed that the residual risk of a critical system outage, while reduced from \"very high\" to \"moderate,\" still exceeds the company\'s stated risk appetite for operational continuity. What is the most appropriate next step for Global Freight Forwarders to align with the principles of ISO 31000:2018 for risk treatment?

Re-evaluate the effectiveness of the implemented security protocols and explore additional or alternative risk treatment options to further reduce the residual risk.
Formally adjust the company's risk appetite statement to encompass the current level of residual risk, thereby making it acceptable.
Initiate a completely new risk assessment process for the inventory management system, disregarding the previous analysis and implemented controls.
Accept the residual risk as a necessary consequence of operating in a digital environment and focus resources on post-incident recovery rather than further prevention.

About the ISO 31000:2018 - Risk Treatment and Control Professional Certification

These free practice questions are designed to help you assess your readiness for the ISO 31000:2018 - Risk Treatment and Control Professional exam by ISO. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.