When reviewing the business continuity plan (BCP) of an online sales order system, a risk practitioner notices that the recovery time objective (RTO) has a shorter lime than what is defined in the disaster recovery plan (DRP). Which of the following is the BEST way for the risk practitioner to address this concern?
Which of the following is MOST helpful in providing a high-level overview of current IT risk severity*?
A multinational organization is considering implementing standard background checks to' all new employees A KEY concern regarding this approach
Which of the following is MOST important to promoting a risk-aware culture?
A risk practitioner has collaborated with subject matter experts from the IT department to develop a large list of potential key risk indicators (KRIs) for all IT operations within the organization of the following, who should review the completed list and select the appropriate KRIs for implementation?
Which risk response strategy could management apply to both positive and negative risk that has been identified?
Which of the following is the MOST important concern when assigning multiple risk owners for an identified risk?
Which of the following is the MOST important consideration when communicating the risk associated with technology end-of-life to business owners?