The CIO of a financial services company is tasked with ensuring IT processes are in compliance with recently instituted regulatory changes. The FIRST course of action should be to:
Which of the following situations provides the BEST justification for considering the adoption of a qualitative risk assessment method?
Which of the following is the MOST important consideration regarding IT measures as part of an IT strategic plan?
Which of the following is the BEST critical success factor (CSF) to use when changing an IT value management program in an enterprise?
Results of an enterprise's customer survey indicate customers prefer using mobile applications. However, this same survey shows the enterprise's mobile applications are considered inferior compared to legacy browser-based applications. Which of the following should be the FIRST step in creating an effective long-term mobile application strategy?
An enterprise has decided to use third-party software for a business process which is hosted and supported by the same third party. The BEST way to provide quality of service oversight would be to establish a process:
A newly established IT steering committee is concerned whether a system is meeting availability objectives. Which of the following will provide the BEST information to make an assessment?
Six months ago, an enterprise's CIO reorganized IT to improve service delivery to the business. Which of the following would BEST demonstrate the effectiveness of the reorganization?
When developing IT risk management policies and standards, it is MOST important to align them with:
In which of the following situations is it acceptable to retain data beyond the stated policy?
Which of the following is the BEST way to address the risk associated with new IT investments?
When determining the desired maturity levels for IT governance processes, it is MOST important to:
An enterprise is concerned about the community impact of its data center noise levels. Which of the following is the enterprise’s BEST course of action?
Which of the following is the MOST comprehensive method to report on overall IT performance to the board of directors?
What is the BEST way for a board of directors to improve its ability to identify material changes to the enterprise IT risk profile?