Isaca Certified in Risk and Information Systems Control CRISC Question # 208 Topic 21 Discussion
CRISC Exam Topic 21 Question 208 Discussion:
Question #: 208
Topic #: 21
A risk practitioner wants to identify potential risk events that affect the continuity of a critical business process. Which of the following should the risk practitioner do FIRST?
A.
Evaluate current risk management alignment with relevant regulations
B.
Determine if business continuity procedures are reviewed and updated on a regular basis
C.
Conduct a benchmarking exercise against industry peers
D.
Review the methodology used to conduct the business impact analysis (BIA)
The risk practitioner shouldfirst review the methodology of the BIAbecause the BIA identifies critical processes and the impacts of disruptions. This ensures that any identified risks are grounded in reliable, updated business impact data.
===========
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit