Certified in Risk and Information Systems Control (CRISC) — Question 948
After an annual risk assessment is completed, which of the following would be MOST important to communicate to stakeholders?
Answer options
- A. A change in the risk profile
- B. A decrease in threats
- C. An increase in identified risk scenarios
- D. An increase in reported vulnerabilities
Correct answer: A
Explanation
Communicating a change in the risk profile is essential as it reflects how the organization's risk landscape has shifted, which can impact decision-making and resource allocation. While decreases in threats, increases in identified scenarios, or vulnerabilities are important, they do not provide as comprehensive an overview of the overall risk status as changes in the risk profile do.