Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Isaca Certified in Risk and Information Systems Control CRISC Question # 219 Topic 22 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 219 Topic 22 Discussion

CRISC Exam Topic 22 Question 219 Discussion:
Question #: 219
Topic #: 22

A risk practitioner learns that a risk owner has been accepting gifts from a supplier of IT products. Some of these IT products are used to implement controls and to mitigate risk to acceptable levels. Which of the following should the risk practitioner do FIRST?


A.

Initiate disciplinary action against the risk owner.


B.

Reassess the risk and review the underlying controls.


C.

Review organizational ethics policies.


D.

Report the activity to the supervisor.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.