Valid CRISC Dumps shared by ExamDiscuss.com for Helping Passing CRISC Exam! ExamDiscuss.com now offer the newest CRISC exam dumps, the ExamDiscuss.com CRISC exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com CRISC dumps with Test Engine here:
After migrating a key financial system to a new provider, it was discovered that a developer could gain access to the production environment. Which of the following is the BEST way to mitigate the risk in this situation?
Correct Answer: C
* After migrating a key financial system to a new provider, it was discovered that a developer could gain access to the production environment. This indicates that there is a risk of unauthorized access, use, disclosure, modification, or destruction of sensitive data, such as financial records, transactions, reports, etc. * A control that could mitigate this risk is to remove the developer's access to the production environment. This means that the developer would not be able to alter the source code or configuration of the financial system without proper authorization or approval. * The other options are not the best ways to mitigate the risk in this situation. They are either irrelevant or less effective than removing the developer's access. The references for this answer are: * Risk IT Framework, page 14 * Information Technology & Security, page 8 * Risk Scenarios Starter Pack, page 6