Isaca Certified in Risk and Information Systems Control CRISC Question # 251 Topic 26 Discussion
CRISC Exam Topic 26 Question 251 Discussion:
Question #: 251
Topic #: 26
An organization plans to provide specific cloud security training for the IT team to help manage risks associated with cloud technology. This response is considered risk:
Risk mitigationinvolves implementing measures to reduce either the likelihood or impact of a risk.
By providingtargeted training, the organization increases staff capability, thereby reducing thelikelihoodof misconfigurations or compliance errors in cloud usage.
ISACA defines mitigation as:
“Implementing controls or training to reduce exposure to risk within acceptable levels.”
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit