グローバル組織は、複数の管轄区域にわたるすべてのプライバシー要件に対応していないアプリケーションを実装しました。組織はプライバシー要件に関して、次のどのリスク対応を採用しましたか?
正解:D
The global organization has adopted risk acceptance as the risk response with regard to privacy requirements, as it has decided to continue with the implementation of the application that does not address all privacy requirements across multiple jurisdictions, and bear the potential consequences of noncompliance. Risk avoidance, risk transfer, and risk mitigation are not the risk responses adopted by the organization, as they would involve avoiding, sharing, or reducing the risk of noncompliance with privacy requirements, respectively. References = CRISC Review Manual, 7th Edition, page 111.