Certified in Risk and Information Systems Control (CRISC) — Question 1015
Which of the following BEST enables senior management to compare the ratings of risk scenarios?
Answer options
- A. Control self-assessment (CSA)
- B. Key risk indicators (KRIs)
- C. Risk heat map
- D. Key performance indicators (KPIs)
Correct answer: C
Explanation
The Risk heat map is the best option because it visually represents the severity and likelihood of various risk scenarios, making it easier for senior management to compare them. Control self-assessment (CSA) focuses on internal controls, Key risk indicators (KRIs) measure specific risks but do not provide a visual comparison, and Key performance indicators (KPIs) track performance rather than risk scenarios.