ExamGecko
Question list
Search
Search

Question 102 - CISM discussion

Report
Export

Which of the following BEST helps to ensure a risk response plan will be developed and executed in a timely manner?

A.
Establishing risk metrics
Answers
A.
Establishing risk metrics
B.
Training on risk management procedures
Answers
B.
Training on risk management procedures
C.
Reporting on documented deficiencies
Answers
C.
Reporting on documented deficiencies
D.
Assigning a risk owner
Answers
D.
Assigning a risk owner
Suggested answer: D

Explanation:

Assigning a risk owner is the best way to ensure a risk response plan will be developed and executed in a timely manner, because a risk owner is responsible for monitoring, controlling, and reporting on the risk, as well as implementing the appropriate risk response actions. A risk owner should have the authority, accountability, and resources to manage the risk effectively. Establishing risk metrics, training on risk management procedures, and reporting on documented deficiencies are all important aspects of risk management, but they do not guarantee that a risk response plan will be executed promptly and properly. Risk metrics help to measure and communicate the risk level and performance, but they do not assign any responsibility or action. Training on risk management procedures helps to increase the awareness and competence of the staff involved in risk management, but it does not ensure that they will follow the procedures or have the authority to do so. Reporting on documented deficiencies helps to identify and communicate the gaps and weaknesses in the risk management process, but it does not provide any solutions or corrective actions.Reference= CISM Review Manual, 16th Edition, ISACA, 2021, pages 125-126, 136-137.

asked 01/10/2024
David LeBlanc
21 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first