What should be included in an organization's approach to risk management?
An approach to ensuring that risk management is continually aligned with objectives
A static list of risks documented at the start of the project
Only risks related to regulatory compliance
A focus only on risks that have already occurred
Submit