Which CRISC domain is primarily responsible for identifying IT risk scenarios that could affect business objectives?