exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 955 discussion

Actual exam question from Isaca's CRISC
Question #: 955
Topic #: 1
[All CRISC Questions]

An organization has completed a risk assessment of one of its service providers. Who should be accountable for ensuring that risk responses are implemented?

  • A. IT risk practitioner
  • B. The relationship owner
  • C. Third-party security team
  • D. Legal representation of the business
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Staanlee
9 months, 1 week ago
Selected Answer: B
B. The relationship owner. The relationship owner, often a representative from the organization's management or procurement team responsible for overseeing the relationship with the service provider, is typically accountable for ensuring that risk responses identified in a risk assessment are implemented. This includes monitoring the service provider's adherence to agreed-upon risk mitigation measures and taking appropriate actions if any risks or issues arise during the course of the relationship.
upvoted 1 times
...
CbtL
1 year, 2 months ago
Selected Answer: B
Agree B.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...