Isaca Certified in Risk and Information Systems Control CRISC Question # 375 Topic 38 Discussion
CRISC Exam Topic 38 Question 375 Discussion:
Question #: 375
Topic #: 38
An audit reveals that there are changes in the environment that are not reflected in the risk profile. Which of the following is the BEST course of action?
The best course of action when an audit reveals that there are changes in the environment that are not reflected in the risk profile is to review the risk identification process. This is because the risk identification process is the first step in the risk management process and it is responsible for identifying and assessing the potential risks that may affect the organization’s objectives. If the risk identification process is not effective, it may result in incomplete, inaccurate, or outdated risk profiles that do not reflect the current environment and the associated risks. Therefore, reviewing the risk identification process will help to ensure that the risk profile is updated and aligned with the changes in the environment and the organization’s strategy. References = Responding to Audit Findings
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit