ExamQuestions.com

Register
Login
Certified in Risk and Information Systems Control Exam Questions

Isaca

Certified in Risk and Information Systems Control

182 / 500

Question 182:

You are the risk professional in Bluewell Inc. A risk is identified and enterprise wants to quickly implement control by applying technical solution that deviates from the company`s policies. What you should do? 

Answer options:

A. Recommend against implementation because it violates the company`s policies
B. Recommend revision of the current policy
C. Recommend a risk assessment and subsequent implementation only if residual risk is accepted
D. Conduct a risk assessment and allow or disallow based on the outcome