CISM Certified Information Security Manager – Question0405

Which of the following results from the risk assessment process would BEST assist risk management decision making?

A.
Control risk
B. Inherent risk
C. Risk exposure
D. Residual risk

Correct Answer: D

Explanation:

Explanation:
Residual risk provides management with sufficient information to decide to the level of risk that an organization is willing to accept. Control risk is the risk that a control may not succeed in preventing an undesirable event. Risk exposure is the likelihood of an undesirable event occurring. Inherent risk is an important factor to be considered during the risk assessment.