CRISC Certified in Risk and Information Systems Control – Question374

Which of the following parameters are considered for the selection of risk indicators? Each correct answer represents a part of the solution. Choose three.

A.
Size and complexity of the enterprise
B. Type of market in which the enterprise operates
C. Risk appetite and risk tolerance
D. Strategy focus of the enterprise

Correct Answer: ABD

Explanation:

Explanation:
Risk indicators are placed at control points within the enterprise and are used to collect data. These collected data are used to measure the risk levels at that point. They also track events or incidents that may indicate a potentially harmful situation.
Risk indicators can be in form of logs, alarms and reports. Risk indicators are selected depending on a number of parameters in the internal and external environment, such as:

  • Size and complexity of the enterprise
  • Type of market in which the enterprise operates
  • Strategy focus of the enterprise

Incorrect Answers:
C: Risk appetite and risk tolerance are considered when applying various risk responses.