Which of the following provides the BEST evidence that risk responses are effective?
A.
Residual risk is within risk tolerance.
B.
Risk with low impact is accepted.
C.
Risk ownership is identified and assigned.
D.
Compliance breaches are addressed in a timely manner.
The Answer Is:
A
This question includes an explanation.
Explanation:
Residual risk is the risk that remains after the risk response has been implemented. Risk tolerance is the acceptable level of variation from the desired outcome or objective. If the residual risk is within the risk tolerance, it means that the risk response has been effective in reducing the risk to an acceptable level.