exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 1562 discussion

Actual exam question from Isaca's CRISC
Question #: 1562
Topic #: 1
[All CRISC Questions]

Which of the following is MOST important to include in an IT risk management policy?

  • A. Risk treatment types
  • B. Risk ownership requirements
  • C. Risk assessment requirements
  • D. Risk scoring methodology
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
d9iceguy
1 month, 2 weeks ago
Selected Answer: B
The most important element to include in an IT risk management policy is risk ownership requirements, because: It defines who is accountable for identifying, assessing, responding to, and monitoring risks. Assigning clear ownership ensures that risk management activities are executed and integrated into business processes. Without defined ownership, even the most robust methodologies or frameworks may fail due to lack of accountability. This sets the foundation for a governance-driven approach to IT risk management.
upvoted 1 times
...
K5000ism
10 months, 2 weeks ago
Selected Answer: C
C. Risk assessment requirements
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago