Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca Exam CISM Topic 4 Question 83 Discussion

Actual exam question for Isaca's CISM exam
Question #: 83
Topic #: 4
[All CISM Questions]

Which of the following BEST enables the assignment of risk and control ownership?

Show Suggested Answer Hide Answer
Suggested Answer: C

Obtaining senior management buy-in is the best way to enable the assignment of risk and control ownership because it helps to establish the authority and accountability of the risk and control owners, as well as to provide them with the necessary resources and support to perform their roles. Risk and control ownership refers to the assignment of specific responsibilities and accountabilities for managing risks and controls to individuals or groups within the organization. Obtaining senior management buy-in helps to ensure that risk and control ownership is aligned with the organizational objectives, structure, and culture, as well as to communicate the expectations and benefits of risk and control ownership to all stakeholders. Therefore, obtaining senior management buy-in is the correct answer.


https://www.protechtgroup.com/en-au/blog/risk-control-management

https://www.mckinsey.com/~/media/mckinsey/dotcom/client_service/risk/working%20papers/23_getting_risk_ownership_right.ashx

https://www.linkedin.com/pulse/risk-controls-who-owns-them-david-tattam

Contribute your Thoughts:

Farrah
7 months ago
I agree with Mable, it provides a structured approach to assigning risk and control ownership.
upvoted 0 times
...
Mammie
7 months ago
But obtaining senior management buy-in is also crucial for effective risk management.
upvoted 0 times
...
Corinne
7 months ago
Did someone say 'risk ownership'? That's my middle name! Option A all the way, gotta align with those industry standards, you know?
upvoted 0 times
Sina
6 months ago
Absolutely, it sets a solid foundation for managing risks.
upvoted 0 times
...
Sheron
6 months ago
It's important to have that alignment for effective risk management.
upvoted 0 times
...
Angelyn
6 months ago
Definitely, it helps in assigning clear ownership of risk and control.
upvoted 0 times
...
Alethea
6 months ago
I agree, aligning to an industry-recognized control framework is key.
upvoted 0 times
...
...
Mattie
7 months ago
Ah, the old 'risk ownership' dilemma. I'd go with D - gotta have that information security strategy to know what we're even dealing with!
upvoted 0 times
Jaclyn
6 months ago
D) Developing an information security strategy
upvoted 0 times
...
Renea
6 months ago
C) Obtaining senior management buy-in
upvoted 0 times
...
Earlean
6 months ago
B) Adopting a risk management framework
upvoted 0 times
...
Edelmira
6 months ago
A) Aligning to an industry-recognized control framework
upvoted 0 times
...
...
Aileen
7 months ago
Hmm, I'm torn between B and C. Both seem important, but I'd say C is the most critical step to get the ball rolling.
upvoted 0 times
...
Micah
7 months ago
C is the way to go. Without senior management buy-in, it's gonna be really tough to get the necessary resources and support for risk ownership.
upvoted 0 times
Talia
6 months ago
D) Developing an information security strategy
upvoted 0 times
...
Matthew
6 months ago
C) Obtaining senior management buy-in
upvoted 0 times
...
Jamika
7 months ago
B) Adopting a risk management framework
upvoted 0 times
...
Gerald
7 months ago
A) Aligning to an industry-recognized control framework
upvoted 0 times
...
...
Mable
7 months ago
I think the best way is to align to an industry-recognized control framework.
upvoted 0 times
...
Jerilyn
7 months ago
I think option B is the best choice here. Adopting a risk management framework is crucial for assigning risk and control ownership.
upvoted 0 times
Ligia
7 months ago
I think obtaining senior management buy-in is also important for assigning risk and control ownership.
upvoted 0 times
...
Honey
7 months ago
I agree, adopting a risk management framework is essential for assigning ownership.
upvoted 0 times
...
...

Save Cancel