Isaca Certified in Risk and Information Systems Control CRISC Question # 329 Topic 33 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 329 Topic 33 Discussion

CRISC Exam Topic 33 Question 329 Discussion:
Question #: 329
Topic #: 33

Which of the following is the BEST recommendation to senior management when the results of a risk and control assessment indicate a risk scenario can only be partially mitigated?


A.

Implement controls to bring the risk to a level within appetite and accept the residual risk.


B.

Implement a key performance indicator (KPI) to monitor the existing control performance.


C.

Accept the residual risk in its entirety and obtain executive management approval.


D.

Separate the risk into multiple components and avoid the risk components that cannot be mitigated.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.