ExamGecko
Question list
Search
Search

Related questions











Question 1136 - CRISC discussion

Report
Export

During a risk assessment, a risk practitioner learns that an IT risk factor is adequately mitigated by compensating controls in an associated business process. Which of the following would enable the MOST effective management of the residual risk?

A.
Schedule periodic reviews of the compensating controls' effectiveness.
Answers
A.
Schedule periodic reviews of the compensating controls' effectiveness.
B.
Report the use of compensating controls to senior management.
Answers
B.
Report the use of compensating controls to senior management.
C.
Recommend additional IT controls to further reduce residual risk.
Answers
C.
Recommend additional IT controls to further reduce residual risk.
D.
Request that ownership of the compensating controls is reassigned to IT
Answers
D.
Request that ownership of the compensating controls is reassigned to IT
Suggested answer: A
asked 18/09/2024
Piyush Zope
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first