According to COBIT 2019 and general IT risk management principles:
"Risk mitigation is the most commonly used response strategy. It involves taking action to reduce the likelihood or impact of a risk, often by implementing controls or other countermeasures."
This is supported in COBIT’s treatment of risk under governance objective EDM03.
[Reference:COBIT 2019 Governance and Management Objectives, EDM03, , , , ]
Submit