QuestionQ914
Risk Response and ReportingWhat is the risk practitioner’s BEST action after management has successfully implemented a security information and event management (SIEM) tool?
- A Review and update key risk indicators (KRIs).
- B Reassess control effectiveness to determine the level of residual risk.
- C Reassess the impact of scenarios to reflect use of the new control.
- D Update the IT risk profile to reflect the change in residual risk.
Community Discussion