Isaca CGEIT Practice Test - Questions Answers, Page 54
List of questions
Related questions
Which of the following is the PRIMARY reason to monitor data classification efforts?
To identify and minimize data security breaches
To identify deviations in the data that are outside risk thresholds
TO ensure alignment with data protection regulations
To ensure assets are protected appropriately
Which of the following is the MOST efficient way for an IT transformation project manager to communicate the project progress with stakeholders?
Establish governance forums within project management.
Include key performance indicators (KPls) in a monthly newsletter.
Share the business case with stakeholders.
Post the project management report to the enterprise intranet site.
An enterprise's board of directors is developing a strategy change. Although the strategy is not finalized, the board recognizes the need for IT to be responsive. Which of the following is the FIRST step to prepare for this change?
Ensure IT has knowledgeable representation and is included in the strategic planning process.
Increase the IT budget and approve an IT staff level increase to ensure resource availability for the strategy change.
Initiate an IT service awareness campaign to business system owners and implement service level agreements (SLAs).
Outsource both IT operations and IT development and implement controls based on a standardized framework.
Which of the following is the PRIMARY consideration for an enterprise when deciding whether to adopt a qualitative risk assessment method?
The method identifies areas to immediately address vulnerabilities.
The method provides specific objective measurements of exposure.
The method enables an analysis Of recommended controls.
The method provides a platform for all departments to contribute to the risk assessment.
Which of the following is the BEST way for a CIO to ensure that IT-related training is taken seriously by the IT management team and direct employees?
Develop training programs based on results of an IT staff survey of preferences.
Embed training metrics into the annual performance appraisal process.
Promote IT-specific training awareness program.
Research and identify training needs based on industry trends.
An enterprise is implementing its first mobile sales channel. Final approval for accepting the associated IT risk should be obtained from which of the following?
Risk manager
Business sponsor
Chief information officer (CIO)
IT steering committee
Which of the following roles is directly responsible for information quality?
Information custodian
Information steward
Information analyst
Information owner
Which of the following would BEST help assess the effectiveness of a newly established IT governance framework?
Develop a business case for the program portfolio.
Evaluate key performance indicator (KPI) results.
Benchmark the IT governance framework to industry best practice.
Review results of IT audit reports.
An organization requires updates to their IT infrastructure to meet business needs. Which of the following will provide the MOST useful information when planning for the necessary IT investments?
Enterprise architecture (EA)
Risk assessment report
Business user satisfaction metrics
Audit findings
Which of the following is the PRIMARY role of the CEO in IT governance?
Evaluating return on investment (ROI)
Nominating IT steering committee membership
Establishing enterprise strategic goals
Managing the risk governance process
Question