CISM Certified Information Security Manager – Question0175

An organization has detected potential risk emerging from noncompliance with new regulations in its industry. Which of the following is the MOST important reason to report this situation to senior management?

A.
The risk profile needs to be updated.
B. An external review of the risk needs to be conducted.
C. Specific monitoring controls need to be implemented.
D. A benchmark analysis needs to be performed.

Correct Answer: B