List of questions
Related questions
Question 482 - CRISC discussion
Business areas within an organization have engaged various cloud service providers directly without assistance from the IT department. What should the risk practitioner do?
A.
Recommend the IT department remove access to the cloud services.
B.
Engage with the business area managers to review controls applied.
C.
Escalate to the risk committee.
D.
Recommend a risk assessment be conducted.
Your answer:
0 comments
Sorted by
Leave a comment first