🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control86 / 150
Question 86 of 150

A financial services firm currently performs enterprise risk assessments on a fixed annual cycle. Over the past year, the organization migrated several core services to a cloud provider, acquired a fintech startup, and faced a surge in targeted phishing campaigns. During the most recent annual assessment, several risks were found to have materialized months earlier without detection. What should the risk practitioner recommend to best address this gap?

Reviewed for accuracy · Report an issueNext question