ExamGecko
Home Home / Isaca / CGEIT

Isaca CGEIT Practice Test - Questions Answers, Page 45

Question list
Search
Search

List of questions

Search

Related questions











Which of the following decisions would be made by the IT strategy committee?

A.
Communication plan for a major IT initiative
A.
Communication plan for a major IT initiative
Answers
B.
Cloud implementation and support plan
B.
Cloud implementation and support plan
Answers
C.
Enterprise risk management (ERM) framework
C.
Enterprise risk management (ERM) framework
Answers
D.
Composition of the investment portfolio
D.
Composition of the investment portfolio
Answers
Suggested answer: D

Which of the following BEST enables an enterprise to determine how business expectations should be addressed in a governance program?

A.
Business impact analysis (BIA)
A.
Business impact analysis (BIA)
Answers
B.
Cost-benefit analysis
B.
Cost-benefit analysis
Answers
C.
Enterprise risk analysis
C.
Enterprise risk analysis
Answers
D.
Stakeholder analysis
D.
Stakeholder analysis
Answers
Suggested answer: D

The CIO of a financial and insurance company is considering the projects and portfolio for the coming year Which of the following projects is a non-discretionary project?

A.
Data center relocation
A.
Data center relocation
Answers
B.
Compliance with statutory regulations
B.
Compliance with statutory regulations
Answers
C.
Actuarial application system analysis and design
C.
Actuarial application system analysis and design
Answers
Suggested answer: B

Which of the following is MOST important to include in IT governance reporting to the board of directors?

A.
Critical risks
A.
Critical risks
Answers
B.
Technology cost savings
B.
Technology cost savings
Answers
C.
Threat landscape
C.
Threat landscape
Answers
D.
Security events
D.
Security events
Answers
Suggested answer: A

A business unit is planning to replace an existing IT legacy solution with a hosted Software as a Service (SaaS) solution. However, business management is concerned that stored data will be at risk. Which of the following is the MOST effective way to reduce the risk associated with the SaaS solution?

A.
Research the technology and identify potential security threats.
A.
Research the technology and identify potential security threats.
Answers
B.
Include risk-related requirements in the SaaS contract.
B.
Include risk-related requirements in the SaaS contract.
Answers
C.
Create key risk indicators (KRls) for the SaaS solution.
C.
Create key risk indicators (KRls) for the SaaS solution.
Answers
D.
Redefine the risk appetite and risk tolerance.
D.
Redefine the risk appetite and risk tolerance.
Answers
Suggested answer: C

A project sponsor has circumvented the request for proposal (RFP) selection process. Which of the following is the MOST likely reason for this control gap?

A.
Inadequate stage-gate reviews
A.
Inadequate stage-gate reviews
Answers
B.
Inadequate board oversight
B.
Inadequate board oversight
Answers
C.
Lack of accountability for policy adherence
C.
Lack of accountability for policy adherence
Answers
D.
Lack of a legal and regulatory review process
D.
Lack of a legal and regulatory review process
Answers
Suggested answer: C

An enterprise is adopting a new governance framework. Of the following, the MOST effective method to help ensure that key activities are performed by appropriate resources is through the use of:

A.
a RACI chart.
A.
a RACI chart.
Answers
B.
an organizational breakdown structure.
B.
an organizational breakdown structure.
Answers
C.
a work breakdown structure.
C.
a work breakdown structure.
Answers
Suggested answer: A

To enable IT to deliver adequate services and maintain availability of a web-facing infrastructure, an IT governance committee should FIRST establish:

A.
web operations procedures.
A.
web operations procedures.
Answers
B.
business continuity plans (BCPs).
B.
business continuity plans (BCPs).
Answers
C.
key performance indicators (KPIs).
C.
key performance indicators (KPIs).
Answers
D.
customer survey processes.
D.
customer survey processes.
Answers
Suggested answer: C

What should be an IT steering committee's FIRST course of action when an enterprise is considering establishing a virtual reality store to sell its products?

A.
Request a resource gap analysis.
A.
Request a resource gap analysis.
Answers
B.
Request development of key risk indicators (KRIs).
B.
Request development of key risk indicators (KRIs).
Answers
C.
Request a threat assessment.
C.
Request a threat assessment.
Answers
D.
Request a cost-benefit analysis.
D.
Request a cost-benefit analysis.
Answers
Suggested answer: C

Which of the following should occur FIRST in the IT investment process?

A.
Assess each project's impact on the enterprise's investment plan.
A.
Assess each project's impact on the enterprise's investment plan.
Answers
B.
Select IT projects that will best support the enterprise's mission.
B.
Select IT projects that will best support the enterprise's mission.
Answers
C.
Analyze IT investments based on past data.
C.
Analyze IT investments based on past data.
Answers
D.
Analyze the risks and benefits of the investment for each IT project.
D.
Analyze the risks and benefits of the investment for each IT project.
Answers
Suggested answer: B
Total 577 questions
Go to page: of 58