Shared Assessments Certified Third-Party Risk Professional (CTPRP) - CTPRP Exam Practice Test
What key elements should be included in the protocols for disclosing information about security incidents to external parties?
Correct Answer: A
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What might be the consequence if unauthorized access occurs in areas such as data centers and server rooms?
Correct Answer: A
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What is the main purpose of a risk register in third-party risk management?
Correct Answer: A
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What does the assignment of a confidentiality level to personal data entail under GDPR?
Correct Answer: C
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What is a critical role of end-user device policies within an organization?
Correct Answer: D
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
When a third-party vendor fails to adhere to the required security standards, which of the following is the most appropriate initial action?
Correct Answer: A
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What aspect of GDPR compliance emphasizes the protection based on the sensitivity of the data?
Correct Answer: C
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Considering multi-factor authentication, which example represents a correct implementation for accessing a corporate network?
Correct Answer: D
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Scenario: During an audit, it was found that an organization's encryption protocols are outdated. As an asset control measure, what should be the organization's next step?
Correct Answer: B
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Which of the following is NOT an example of internal communications in the context of TPRM?
Correct Answer: B
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What is typically sufficient for conducting due diligence on a lower risk vendor?
Correct Answer: C
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Consider a financial firm using a third-party for transaction processing, which experiences a security breach. What is the primary impact concern related to regulatory compliance?
Correct Answer: B
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
In application security design, _________ is critical for managing user permissions and access to resources.
Correct Answer: B
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
The business unit relationship owner is crucial in the __________ plan approval process.
Correct Answer: D
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).