2.4 Changes in Risk Environment
- As the business processes and technology changes, risk environment also gets changed with new types of threats. No systems can be considered as secured perpetually.
- This indicates that risk assessment should be done at regular interval to address the emerging risks.
- Main benefit of performing a risk assessment on a consistent basis is that it helps to understand the trends in the risk profile.
- Technological changes are inevitable in today’s world. However, new technology should be properly assessed and tested before implementation. Risk practitioner is responsible to ensure that any new technology implemented should be subject to risk assessment. A risk practitioner should determine the maturity of the enterprise toward monitoring and adapting to new market trends.
- An independent benchmark of capabilities helps an organization to determine its level of capability compared to other organizations within its industry.
Key aspects from CRISC exam perspective
CRISC Question
|
Possible Answer
|
Primary advantage of performing a risk assessment on a consistent
basis
|
Helps to understand the trends in the risk profile
|
Best way to determine the capability of the organization as compared
to industries
|
An independent benchmark of capabilities
|