Certified in Risk and Information Systems Control (CRISC) — Question 293
Which of the following BEST -
describes the role of the IT risk profile in strategic IT-related decisions?
Answer options
- A. It compares performance levels of IT assets to value delivered.
- B. It provides input to business managers when preparing a business case for new IT projects.
- C. It facilitates the alignment of strategic IT objectives to business objectives.
- D. It helps assess the effects of IT decisions on risk exposure.
Correct answer: D
Explanation
The correct answer, D, is accurate because the IT risk profile is designed to assess how IT decisions influence risk exposure. Options A, B, and C, while relevant to IT management, do not specifically address the primary role of the IT risk profile in evaluating risk exposure related to IT decisions.