ISO 31010:2019 - Risk Assessment Lead Practitioner Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

Consider a scenario where an organization, following a comprehensive risk assessment process aligned with ISO 31010:2019, implements a new cybersecurity control designed to mitigate the risk of unauthorized data exfiltration. Six months post-implementation, internal audits and incident reports suggest that while the control has reduced the frequency of minor breaches, a significant data leak still occurred, indicating the control\'s effectiveness is not as robust as initially projected. What is the most appropriate next step for the Risk Assessment Lead Practitioner in this situation, according to the principles of ISO 31010:2019?

Initiate a full re-assessment of the cybersecurity risk, focusing on the adequacy of the implemented control and potentially identifying new or modified treatment options.
Conclude that the risk treatment is partially effective and document the residual risk, proceeding with other organizational priorities.
Immediately replace the existing control with a completely different technological solution without further analysis of the root cause of the control's underperformance.
Escalate the issue to senior management, requesting a complete overhaul of the risk management framework due to the perceived failure of the initial assessment.

About the ISO 31010:2019 - Risk Assessment Lead Practitioner Certification

These free practice questions are designed to help you assess your readiness for the ISO 31010:2019 - Risk Assessment Lead Practitioner exam by ISO. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.