List of questions
Related questions
Question 718 - CRISC discussion
An IT risk practitioner has determined that mitigation activities differ from an approved risk action plan. Which of the following is the risk practitioner's BEST course of action?
A.
Report the observation to the chief risk officer (CRO).
B.
Validate the adequacy of the implemented risk mitigation measures.
C.
Update the risk register with the implemented risk mitigation actions.
D.
Revert the implemented mitigation measures until approval is obtained
Your answer:
0 comments
Sorted by
Leave a comment first