Certified in Risk and Information Systems Control (CRISC) — Question 1065
Which among the following acts as a trigger for risk response process?
Answer options
- A. Risk level increases above risk appetite
- B. Risk level increase above risk tolerance
- C. Risk level equates risk appetite
- D. Risk level equates the risk tolerance
Correct answer: B
Explanation
The correct answer is B because the risk response process is triggered when the risk level exceeds the established risk tolerance, indicating a need for action. Options A, C, and D do not signify an urgent need for response since they either fall within acceptable limits or do not surpass the threshold that necessitates action.