Certified in Risk and Information Systems Control (CRISC) — Question 1166
The MOST important reason to periodically review key risk indicators (KRIs) is to:
Answer options
- A. satisfy audit requirements.
- B. comply with risk-related laws and regulations.
- C. identify deviations from organizational tolerance.
- D. align with industry benchmarks.
Correct answer: C
Explanation
The correct answer, C, highlights the necessity of recognizing deviations from what the organization deems acceptable, which is crucial for effective risk management. Options A and B are secondary considerations that may be influenced by the primary goal of managing risk, while D focuses on alignment rather than identifying internal discrepancies.