List of questions
Related questions
Question 755 - CRISC discussion
The PRIMARY objective for requiring an independent review of an organization's IT risk management process should be to:
A.
assess gaps in IT risk management operations and strategic focus.
B.
confirm that IT risk assessment results are expressed as business impact.
C.
verify implemented controls to reduce the likelihood of threat materialization.
D.
ensure IT risk management is focused on mitigating potential risk.
Your answer:
0 comments
Sorted by
Leave a comment first