Valid CRISC Dumps shared by ExamDiscuss.com for Helping Passing CRISC Exam! ExamDiscuss.com now offer the newest CRISC exam dumps, the ExamDiscuss.com CRISC exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com CRISC dumps with Test Engine here:
A risk practitioner is defining metrics for security threats that were not identified by antivirus software. Which type of metric is being developed?
Correct Answer: B
A KRI is a measure used by an organization to measure the health of a particular risk. In this case, the risk practitioner is developing a metric to measure the risk associated with security threats that were not identified by antivirus software12. References 1Standardized Scoring for Security and Risk Metrics - ISACA 2Key Performance Indicators for Security Governance, Part 1 - ISACA