ExamGecko
Question list
Search
Search

Question 18 - IT Risk Fundamentals discussion

Report
Export

Publishing l&T risk-related policies and procedures BEST enables an enterprise to:

A.

set the overall expectations for risk management.

Answers
A.

set the overall expectations for risk management.

B.

hold management accountable for risk loss events.

Answers
B.

hold management accountable for risk loss events.

C.

ensure regulatory compliance and adherence to risk standards.

Answers
C.

ensure regulatory compliance and adherence to risk standards.

Suggested answer: A

Explanation:

Publishing IT risk-related policies and procedures sets the overall expectations for risk management within an enterprise. These documents provide a clear framework and guidelines for how risk should be managed, communicated, and mitigated across the organization. They outline roles, responsibilities, and processes, ensuring that all employees understand their part in the risk management process. This clarity helps align the organization's efforts towards a common goal and fosters a risk-aware culture. While holding management accountable and ensuring regulatory compliance are important, the primary role of these policies is to set the tone and expectations for managing risks effectively, as emphasized by standards such as ISO 27001 and COBIT.

asked 18/11/2024
Victor Cantu
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first