ExamGecko
Question list
Search
Search

Question 11 - IT Risk Fundamentals discussion

Report
Export

Which of the following MUST be established in order to manage l&T-related risk throughout the enterprise?

A.

An enterprise risk governance committee

Answers
A.

An enterprise risk governance committee

B.

The enterprise risk universe

Answers
B.

The enterprise risk universe

C.

Industry best practices for risk management

Answers
C.

Industry best practices for risk management

Suggested answer: A

Explanation:

To manage IT-related risk throughout the enterprise, it is crucial to establish an enterprise risk governance committee. This committee provides oversight and direction for the risk management activities across the organization. It ensures that risks are identified, assessed, and managed in alignment with the organization's risk appetite and strategy. The committee typically includes senior executives and stakeholders who can influence policy and resource allocation. This structure supports a comprehensive approach to risk management, integrating risk considerations into decision-making processes. This requirement is in line with guidance from frameworks such as COBIT and ISO 27001, which emphasize governance structures for effective risk management.

asked 18/11/2024
Anas Hairuddin
23 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first