CRISC Certified in Risk and Information Systems Control – Question573

Which of the following would be a risk practitioner’s BEST recommendation to help ensure cyber risk is assessed and reflected in the enterprise-level risk profile?

A.
Conduct cyber risk awareness training tailored specifically for senior management
B. Implement a cyber risk program based on industry best practices
C. Manage cyber risk according to the organization’s risk management framework
D. Define cyber roles and responsibilities across the organization

Correct Answer: C