Which of the following best describes the concept of 'risk appetite' in IT governance?
-
A
The maximum amount the company is willing to spend on cybersecurity
-
B
The total level of risk an organization is willing to accept in pursuit of its objectives
-
C
The risk remaining after controls are applied
-
D
The probability of a risk event occurring within a fiscal year