Exam CISA All QuestionsBrowse all questions from this exam
Question 700

During a new system implementation, an IS auditor has been assigned to review risk management at each milestone. The auditor finds that several risks to project benefits have not been addressed. Who should be accountable for managing these risks?

    Correct Answer: C

    The project sponsor is accountable for managing the risks to project benefits. The project sponsor assumes overall ownership and accountability of the project and chairs the steering committee, ensuring that the project's goals and benefits are met. Therefore, they are the most suitable person to manage risks that threaten these benefits.

Discussion
saado9Option: A

A. Project manager

[Removed]Option: C

per CRM, Generally, a project sponsor assumes the overall ownership and accountability of the project and chairs the steering committee.

Yejide03

A. Project manager

SwallowsOption: C

While the project manager (option A) plays a key role in day-to-day project management activities, including risk management, the project sponsor holds the ultimate accountability for project outcomes and benefits realization. Therefore, it is the project sponsor who should take the lead in managing risks to project benefits.