Certified in Risk and Information Systems Control (CRISC) — Question 65
Which of the following is the MOST important consideration when identifying stakeholders to review risk scenarios developed by a risk analyst? The reviewers are:
Answer options
- A. authorized to select risk mitigation options.
- B. independent from the business operations.
- C. accountable for the affected processes.
- D. members of senior management.
Correct answer: C
Explanation
The correct answer is C because stakeholders who are accountable for the affected processes have the necessary insight and authority to make informed decisions regarding risk scenarios. Options A, B, and D may hold importance, but they do not ensure the same level of accountability and direct impact on the processes being assessed.