Risk owner
The person in whom the organization has invested the authority and accountability for making risk-based decisions and who owns the loss associated with a realized risk scenario.
Because the individual with authority to commit organizational resources is responsible for making decisions and allocating resources to address the IT risk. This person has the power to ensure that necessary resources and efforts are put into place to mitigate the risk effectively.
I think C as well. According to ISACA, it's the dept heads who owns the risks as this person drives remediation.
upvoted 3 times
...
...
This section is not available anymore. Please use the main Exam Page.CRISC Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Raj1510
Highly Voted 1 year, 12 months agoCbtL
Most Recent 9 months, 1 week agojohn_boogieman
11 months, 1 week agoBoubou480
11 months, 3 weeks agoOdenkyem
2 years, 8 months agohussmohsin
2 years, 11 months agotravdaman
2 years, 11 months ago