Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Isaca Isaca Certification CGEIT Questions and answers with CertsForce

Viewing page 7 out of 14 pages
Viewing questions 91-105 out of questions
Questions # 91:

Which of the following is MOST critical for the successful implementation of an IT process?

Options:

A.

Process framework


B.

Service delivery process model


C.

Objectives and metrics


D.

IT process assessment


Expert Solution
Questions # 92:

The PRIMARY reason for implementing an IT governance program in an enterprise is to

Options:

A.

balance the demand for information and the ability to deliver.


B.

complies with regulatory requirements


C.

reduce risks due to improved compensating controls.


D.

decrease the scale of investment in information systems due to budgetary controls.


Expert Solution
Questions # 93:

Which of the following is MOST important to the successful implementation of enterprise architecture (EA)?

Options:

A.

Developing data modeling tools


B.

Managing the challenge of change


C.

Reducing the cost of IT investments


D.

Establishing key performance indicators (KPIs)


Expert Solution
Questions # 94:

The MAIN responsibility of the board of directors regarding the management of enterprise risk is to:

Options:

A.

ensure a risk process exists which addresses the risk appetite.


B.

sustain investment in staff training regarding IT risk.


C.

promote a benefits-driven culture throughout the enterprise.


D.

maintain awareness of IT risk to the business.


Expert Solution
Questions # 95:

To ensure IT risk is managed in a consistent manner, it is MOST important for IT governance to establish a:

Options:

A.

risk management committee to identify IT-related risks.


B.

risk management framework.


C.

balanced scorecard that includes IT risks.


D.

risk management reporting tool to ensure compliance.


Expert Solution
Questions # 96:

When developing an IT governance framework, it is MOST important for an enterprise to consider:

Options:

A.

information technology risk.


B.

framework development cost.


C.

information technology strategy.


D.

stakeholders' support.


Expert Solution
Questions # 97:

Which of the following should be the PRIMARY goal of implementing an IT strategic planning process?

Options:

A.

Determining benefits from IT deployments


B.

Optimizing IT resources to drive innovation


C.

Directing business strategy to achieve goals


D.

Translating business needs into IT initiatives


Expert Solution
Questions # 98:

A data governance strategy has been defined by the IT strategy committee which includes privacy objectives related to access controls, authorized use. and data collection. Which of the following should the committee do NEXT?

Options:

A.

Mandate data privacy training for employees.


B.

Establish a data privacy budget


C.

Perform a data privacy impact assessment.


D.

Mandate the creation of a data privacy policy.


Expert Solution
Questions # 99:

Which of the following are the MOST important processes for information asset life cycle management?

Options:

A.

Procurement management and third-party management


B.

Configuration management and financial management


C.

Vulnerability management and network management


D.

Business continuity management and disaster recovery management


Expert Solution
Questions # 100:

An enterprise's chief information officer (CIO) has been receiving complaints from business executives regarding the amount their units are being charged for IT services. To maintain a good relationship with business peers, the CIO wants to be responsive to these complaints. To address this issue, the FIRST step should be to:

Options:

A.

agree to reduce charge rates and improve relationship management with the business.


B.

look into outsourcing of support functions to drive down the cost structure.


C.

ask the chief financial officer (CFO) about budget revisions for the business units' IT expenditures.


D.

quantify consumption and service level agreement (SLA) achievements per business unit.


Expert Solution
Questions # 101:

IT senior management is concerned that IT service levels consistently fall below those outlined in the service level agreement (SLA). Which of the following would BEST enable the CIO to build a corrective action plan?

Options:

A.

Assessing the impact of the SLA failure


B.

Conducting an IT performance evaluation


C.

Reviewing the IT staff training plan


D.

Performing a root cause analysis


Expert Solution
Questions # 102:

An enterprise wants to address the human factors of social engineering risk within the organization. From a governance perspective, which of the following is the BEST way to mitigate this risk?

Options:

A.

Distribute the social media information security policy to staff.


B.

Mandate annual security awareness training.


C.

Restrict access to social media.


D.

Mandate security requirements be included in employee contracts.


Expert Solution
Questions # 103:

An organization is evaluating vendors to provide mobile device management (MDM) services. Which of the following is a KEY governance consideration for the IT steering committee?

Options:

A.

Service level targets align with business requirements.


B.

Employee-owned devices will be covered by the service.


C.

The MDM services are delivered via a cloud.


D.

Technology-owned devices will be covered by the service


Expert Solution
Questions # 104:

To meet the growing demands of a newly established business unit, IT senior management has been tasked with changing the current IT organization model to

service-oriented. With significant growth expected of the IT organization, which of the following is the MOST important consideration when planning for long-term IT

service delivery?

Options:

A.

The IT service delivery model is approved by the business.


B.

An IT risk management process is in place.


C.

IT is able to provide a comprehensive service catalog to the business.


D.

The IT organization is able to sustain business requirements.


Expert Solution
Questions # 105:

An enterprise has learned of a new regulation that may impact delivery of one of its core technology services Which of the following should the done FIRST?

Options:

A.

Update the risk management framework


B.

Determine whether the board wants to comply with the regulation


C.

Assess the risk associated with the new regulation


D.

Request an action plan from the risk team


Expert Solution
Viewing page 7 out of 14 pages
Viewing questions 91-105 out of questions