🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control117 / 150
Question 117 of 150
A financial services firm implemented multi-factor authentication and enhanced logging six months ago to mitigate the risk of unauthorized access to its customer portal. The risk owner now wants to confirm whether the risk response achieved its intended objective before reporting closure of the mitigation project to the risk committee. Which action should the risk practitioner recommend FIRST?
Reviewed for accuracy · Report an issueNext question