ExamGecko
Question list
Search
Search

Question 578 - CISM discussion

Report
Export

Which of the following is MOST appropriate to communicate to senior management regarding information risk?

A.
Defined risk appetite
Answers
A.
Defined risk appetite
B.
Emerging security technologies
Answers
B.
Emerging security technologies
C.
Vulnerability scanning progress
Answers
C.
Vulnerability scanning progress
D.
Risk profile changes
Answers
D.
Risk profile changes
Suggested answer: D

Explanation:

The most appropriate information to communicate to senior management regarding information risk is the risk profile changes, which reflect the current level and nature of the risks that the organization faces. The risk profile changes can help senior management to understand the impact of the risks on the business objectives, the effectiveness of the risk management strategy, and the need for any adjustments or improvements. The risk profile changes can also help senior management to prioritize the allocation of resources and to make informed decisions.

Reference= CISM Review Manual, 16th Edition eBook1, Chapter 2: Information Risk Management, Section: Risk Communication, Subsection: Risk Reporting, Page 97.

asked 01/10/2024
GUY XAVIER DONGMO FAPONG
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first