exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 791 discussion

Actual exam question from Isaca's CISA
Question #: 791
Topic #: 1
[All CISA Questions]

Which of the following is the BEST approach for determining the overall IT risk appetite of an organization when business units use different methods for managing IT risks?

  • A. Average the business units' IT risk levels.
  • B. Identify the highest-rated IT risk level among the business units.
  • C. Establish a global IT risk scoring criteria.
  • D. Prioritize the organization's IT risk scenarios.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ziutek_
Highly Voted 2 years, 4 months ago
I would go with C here
upvoted 5 times
...
9967be3
Most Recent 5 days, 16 hours ago
Selected Answer: C
Standardization is key
upvoted 1 times
...
dencam
1 month, 1 week ago
Selected Answer: C
The BEST approach is C. Establishing a global IT risk scoring criteria provides the necessary common foundation to understand, compare, and aggregate risks across disparate business units, which is essential for determining an overall IT risk appetite.
upvoted 1 times
...
molyneachieng21
8 months ago
B. The highest rated risk will help in determining in the risk appettite of the organization.
upvoted 1 times
...
Swallows
10 months, 1 week ago
Selected Answer: D
Prioritizing risks for IT risk scenarios across the organization allows you to understand which risks have the most impact and how much they affect the strategic risk objectives of the organization. This allows you to effectively prioritize risk management and allocate resources. Therefore, prioritizing IT risk scenarios across the organization is more appropriate for determining the overall IT risk tolerance of the organization than simply averaging the IT risk levels of each business unit or identifying the highest rating. This allows risk management to be aligned with the strategic risk objectives of the organization.
upvoted 2 times
...
3008
1 year, 5 months ago
Selected Answer: C
C is correct.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago