exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 764 discussion

Actual exam question from Isaca's CRISC
Question #: 764
Topic #: 1
[All CRISC Questions]

After recent updates to the risk register, management has requested that the overall level of residual risk be reduced. Which of the following is the risk practitioner's BEST course of action?

  • A. Prioritize remediation plans.
  • B. Recommend the acceptance of low-level risk.
  • C. Develop new risk action plans with risk owners.
  • D. Implement additional controls.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CbtL
9 months ago
Selected Answer: C
Going with C. At first I thought it was A, but then realized they were saying reduce residual risk, implying the controls are in place. Nothing to establish what, if any, remediation plans are in place. You want to lower residual risk, you make a plan to do so. Then A. comes into play to produce D. How's that for overthinking the question?
upvoted 1 times
...
Koulyo
9 months, 1 week ago
option A, to prioritize remediation plans. Residual risk is the level of risk that remains after controls have been implemented. Management's request to reduce the overall level of residual risk indicates a desire to further mitigate risks that have not been effectively controlled by the current measures. In this scenario, the risk practitioner should prioritize the remediation plans that will have the greatest impact on reducing residual risk to achieve management's objective.
upvoted 1 times
...
jseeker
9 months, 3 weeks ago
Selected Answer: C
The risk mitigation plans developed earlier would be tailored to meet the residual risk (that was agreed upon earlier). If the residual risk bar need to be lowered further, the risk practitioner may have to develop new risk plan with mitigation options (after consulting the business owners and other stakeholders). Hence prioritization of remediation plans, can’t be the answer. Any thoughts, guys?
upvoted 2 times
CbtL
9 months ago
The goal is to reduce the level of residual risk. Residual risk implies controls are in place. C and D are the more relevant answers of the four. You would not want to jump right into implementing new controls without first undertaking C Develop new risk action plans with risk owners.
upvoted 1 times
...
...
Broesweelies
9 months, 3 weeks ago
Selected Answer: A
It is for sure A
upvoted 2 times
SuperMax
1 month, 1 week ago
The risk practitioner's best course of action, in this case, would be to prioritize remediation plans. By focusing on addressing and mitigating the highest-priority risks first, the organization can effectively reduce the overall level of residual risk. This involves identifying and implementing measures to reduce the likelihood and impact of the most significant risks in the risk register. While implementing additional controls (option D) may be a part of the remediation plans, it's essential to prioritize and focus efforts on the most critical risks to achieve the greatest impact. Developing new risk action plans with risk owners (option C) may also be necessary, but the emphasis should be on addressing the highest-priority risks first. Recommending the acceptance of low-level risk (option B) may not align with the goal of reducing the overall level of residual risk.
upvoted 1 times
...
...
Ebucluc
1 year, 3 months ago
I don't think so, the answer should be A.
upvoted 2 times
...
Kozy
1 year, 3 months ago
Selected Answer: D
Can Risk practitioner implement controls?!
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago