Certified in Risk and Information Systems Control (CRISC) — Question 504
Which of the following is the MOST appropriate action when a tolerance threshold is exceeded?
Answer options
- A. Verify the response plan is adequate.
- B. Communicate potential impact to decision makers.
- C. Increase human resources to respond in the interim.
- D. Research the root cause of similar incidents.
Correct answer: B
Explanation
The correct answer is B because informing decision makers about the potential impact allows for timely and informed decisions regarding the situation. Options A, C, and D, while important actions, do not directly address the immediate need to communicate the implications of the exceeded threshold to those who can make necessary decisions.