A utility risk owner wants open critical findings from security tooling to nudge a ransomware residual indicator—without redesigning the item as a CIS-SIR or CIS-VR configuration exam. What is the appropriate IRM use of that data?
Select an answer to reveal the explanation.
Short Explanation
Security scanners can whisper to a risk indicator without stealing the whole show. Use their signals as input context while IRM stays the risk book of record. Don't rip out indicators or turn VR into your only register.
Full Explanation
IRM may consume SecOps or scanner outputs as indicator inputs or risk context without becoming a SIR/VR implementation question. The risk register and indicators remain in IRM; security tools inform scoring and monitoring. Replacing IRM with VR workflows or disabling indicators misunderstands the integration boundary.