CRISC Exam QuestionsBrowse all questions from this exam

CRISC Exam - Question 1153


Which of the following should be the PRIMARY basis for deciding whether to disclose information related to risk events that impact external stakeholders?

Show Answer
Correct Answer: C

Regulatory requirements should be the primary basis for deciding whether to disclose information related to risk events that impact external stakeholders. This is because failing to comply with regulatory requirements can result in legal penalties and sanctions. It is essential to adhere to laws and regulations to avoid legal repercussions and ensure the organization is operating within the legal framework. While management assertions, contractual requirements, and stakeholder preferences may play a role, regulatory requirements take precedence as they are legally mandated.

Discussion

2 comments
Sign in to comment
K5000ismOption: C
Dec 29, 2023

C. Regulatory requirements

tomiabiodunOption: B
Jun 7, 2024

I believe it should be contractual requirements. What if the organization does not operate in a regulated environment? The organization is bound contractually to disclose information regarding risk events that may impact their customers. I stand corrected though.