IsacaIsaca
CRISC · Question #412
CRISC Question #412: Real Exam Question with Answer & Explanation
Sign in or unlock CRISC to reveal the answer and full explanation for question #412. The question stem and answer options stay visible for context.
Submitted by khalil_dz· Apr 18, 2026Risk Response and Reporting
Question
An organization recently experienced a cyber attack that resulted in the loss of confidential customer data. Which of the following is the risk practitioner's BEST recommendation after recovery steps have been completed?
Options
- ADevelop new key risk indicators (KRIs).
- BPerform a root cause analysis.
- CRecommend the purchase of cyber insurance.
- DReview the incident response plan.
Unlock CRISC to see the answer
You've previewed enough free CRISC questions. Unlock CRISC for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Post-incident analysis#Root cause analysis#Incident response#Risk management improvement