Isaca Certified in Risk and Information Systems Control CRISC Question # 473 Topic 48 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 473 Topic 48 Discussion

CRISC Exam Topic 48 Question 473 Discussion:
Question #: 473
Topic #: 48

When reviewing management's IT control self-assessments, a risk practitioner noted an ineffective control that links to several low residual risk scenarios. What should be the NEXT course of action?


A.

Assess management's risk tolerance.


B.

Recommend management accept the low-risk scenarios.


C.

Propose mitigating controls


D.

Re-evaluate the risk scenarios associated with the control


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.