ExamGecko
Home Home / Isaca / CGEIT

Isaca CGEIT Practice Test - Questions Answers, Page 14

Question list
Search
Search

List of questions

Search

Related questions











The BEST way to manage an outsourced vendor relationship is by:

A.
conducting periodic risk assessments.
A.
conducting periodic risk assessments.
Answers
B.
reviewing annual independent third-party reports.
B.
reviewing annual independent third-party reports.
Answers
C.
providing clear objectives and transparency.
C.
providing clear objectives and transparency.
Answers
D.
analyzing performance statistics from the vendor.
D.
analyzing performance statistics from the vendor.
Answers
Suggested answer: D

Which of the following BEST reflects mature risk management in an enterprise?

A.
A regularly updated risk register
A.
A regularly updated risk register
Answers
B.
Ongoing risk assessment
B.
Ongoing risk assessment
Answers
C.
Ongoing investment in risk mitigation
C.
Ongoing investment in risk mitigation
Answers
D.
Responsive risk awareness culture
D.
Responsive risk awareness culture
Answers
Suggested answer: D

An enterprise is initiating efforts to improve system availability to mitigate IT risk to the business. Which of the following results would be MOST important to report to the CIO to measure progress?

A.
Incident severity and downtime trend analysis
A.
Incident severity and downtime trend analysis
Answers
B.
Probability and seventy of each IT risk
B.
Probability and seventy of each IT risk
Answers
C.
Financial losses and bad press releases
C.
Financial losses and bad press releases
Answers
D.
Customer and stakeholder complaints over time
D.
Customer and stakeholder complaints over time
Answers
Suggested answer: A

A review of the effectiveness of IT governance within an enterprise has revealed that several innovation improvement initiatives are failing. An analysis shows a lack of stakeholder buy-in to the improvements. Implementing which of the following would have prevented this problem?

A.
An IT project roadmap
A.
An IT project roadmap
Answers
B.
An IT risk management program
B.
An IT risk management program
Answers
C.
A change management program
C.
A change management program
Answers
D.
A service delivery framework
D.
A service delivery framework
Answers
Suggested answer: C

Which of the following is the BEST way for a CIO to secure support for a strategy to achieve long-term IT objectives?

A.
Make the necessary strategic decisions and notify staff accordingly.
A.
Make the necessary strategic decisions and notify staff accordingly.
Answers
B.
Develop tactics to implement the strategy and share with stakeholders.
B.
Develop tactics to implement the strategy and share with stakeholders.
Answers
C.
Develop a communication plan for distribution of information to staff.
C.
Develop a communication plan for distribution of information to staff.
Answers
D.
Meet with stakeholders to explain the strategy and incorporate feedback.
D.
Meet with stakeholders to explain the strategy and incorporate feedback.
Answers
Suggested answer: D

Two large financial institutions with different corporate cultures are engaged in a merger. From a governance perspective, which of the following should be the GREATEST concern?

A.
Technology infrastructure
A.
Technology infrastructure
Answers
B.
Risk appetite
B.
Risk appetite
Answers
C.
Combined cost of operations
C.
Combined cost of operations
Answers
D.
Enterprise architecture (EA) integration
D.
Enterprise architecture (EA) integration
Answers
Suggested answer: D

A healthcare enterprise that is subject to strict compliance requirements has decided to outsource several key IT services to third-party providers. Which of the following would be the BEST way to assess compliance and avoid reputational damage?

A.
Require quarterly reports from the providers demonstrating compliance.
A.
Require quarterly reports from the providers demonstrating compliance.
Answers
B.
Require documentation that the providers have adequate controls in place.
B.
Require documentation that the providers have adequate controls in place.
Answers
C.
Exercise the right to perform an audit.
C.
Exercise the right to perform an audit.
Answers
D.
Impose monetary penalties for noncompliance.
D.
Impose monetary penalties for noncompliance.
Answers
Suggested answer: C

An enterprise plans to expand into new markets in countries lacking data privacy regulations, increasing risk exposure. Which of the following is the BEST course of action for the CIO?

A.
Identify business risk appetite and tolerance levels.
A.
Identify business risk appetite and tolerance levels.
Answers
B.
Quantify the risk impact and evaluate possible countermeasures.
B.
Quantify the risk impact and evaluate possible countermeasures.
Answers
C.
Limit the personal data available to the high-risk countries.
C.
Limit the personal data available to the high-risk countries.
Answers
D.
Mandate the strengthening of user access controls.
D.
Mandate the strengthening of user access controls.
Answers
Suggested answer: A

A global financial institution has decided to integrate data from branch locations into a common database to address regulatory reporting requirements. Analysis of data flows and the full data life cycle should be conducted at which level?

A.
Transaction level
A.
Transaction level
Answers
B.
Enterprise level
B.
Enterprise level
Answers
C.
Branch level
C.
Branch level
Answers
D.
Department level
D.
Department level
Answers
Suggested answer: A

An enterprise's service center is experiencing long delays in fulfilling !T service requests and very low customer satisfaction. The BEST way to determine if staff competency is the root cause of these performance problems is to compare required staff competencies with:

A.
certification requirements.
A.
certification requirements.
Answers
B.
current skills inventory.
B.
current skills inventory.
Answers
C.
training program completions.
C.
training program completions.
Answers
D.
hiring and staffing practices.
D.
hiring and staffing practices.
Answers
Suggested answer: B
Total 577 questions
Go to page: of 58