Isaca Certified in Risk and Information Systems Control CRISC Question # 238 Topic 24 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 238 Topic 24 Discussion

CRISC Exam Topic 24 Question 238 Discussion:
Question #: 238
Topic #: 24

A deficient control has been identified which could result in great harm to an organization should a low frequency threat event occur. When communicating the associated risk to senior management the risk practitioner should explain:


A.

mitigation plans for threat events should be prepared in the current planning period.


B.

this risk scenario is equivalent to more frequent but lower impact risk scenarios.


C.

the current level of risk is within tolerance.


D.

an increase in threat events could cause a loss sooner than anticipated.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.