Certified in Risk and Information Systems Control (CRISC) — Question 722
The MAIN purpose of having a documented risk profile is to:
Answer options
- A. enable well-informed decision making.
- B. comply with external and internal requirements.
- C. keep the risk register up-to-date.
- D. prioritize investment projects.
Correct answer: A
Explanation
The correct answer is A because a documented risk profile provides essential information that aids decision-makers in understanding potential risks and making informed choices. Options B, C, and D, while relevant to risk management, are secondary benefits that do not capture the primary purpose of the risk profile.