List of questions
Question 1058 - CRISC discussion
A highly regulated enterprise is developing a new risk management plan to specifically address legal and regulatory risk scenarios What should be done FIRST by IT governance to support this effort?
A.
Request a regulatory risk reporting methodology
B.
Require critical success factors (CSFs) for IT risks.
C.
Establish IT-specific compliance objectives
D.
Communicate IT key risk indicators (KRIs) and triggers
Your answer:
0 comments
Sorted by
Leave a comment first