In your opinion, who SHOULD own the risk in your organization?

In your opinion, who SHOULD own the risk in your organization?

Risks are owned by the department head (senior level) where the risk exist, they are the folks who can best managed the risks.

232 views
4 comments
0 upvotes
Related Tags
Anonymous Author
Risks are owned by the department head (senior level) where the risk exist, they are the folks who can best managed the risks.
0 upvotes
Anonymous Author
No one person should 'own' risk for an organization. Risk should be transparent and shared among the appropriate stakeholders.
1 upvotes
Anonymous Author
The question is loaded as there are multiple definitions of risk.  A well structured risk governing body consists of the multiple lens.
0 upvotes
Anonymous Author
Owned by Application (Budget) owner.  In my experience the risk can come from older or unmaintained systems, so if the owner wont' fund for upgrades, enhancements, closing security gaps, it's on the owner and the budget to decide to keep the systems and the risk, or shut it down, or fund remediation.
0 upvotes