Isaca CGEIT Practice Test - Questions Answers, Page 56
List of questions
Related questions
Which of the following would be MOST helpful to review when determining how to allocate IT resources during a resource shortage?
IT skill development plan
IT organizational structure
IT skills inventory
IT strategic plan
When conducting a risk assessment in support of a new regulatory requirement, the IT risk committee should FIRST consider the:
cost burden to achieve compliance.
readiness of IT systems to address the risk.
risk profile of the enterprise.
disruption to normal business operations.
An IT steering committee is concerned about staff saving data files containing sensitive corporate information on publicly available cloud file storage applications. Which of the following should be done FIRST to address this concern?
Create a secure corporate cloud file storage and sharing solution.
Block corporate access to cloud file storage applications.
Require staff training on data classification policies.
Revise the data management policy to prohibit this practice.
ACIO determines IT investment management processes are not fully realizing the benefits identified in business cases. Which of the following would be the BEST way to prevent this issue?
Establish a requirement for ClO review and approval of each business case.
Evaluate the delegation of investment approval authorities.
Perform stage-gate reviews throughout the life cycle of each project.
Document lessons learned throughout the investment life cycle.
An enterprise's IT department has been operating independently without regard to business concerns, leading to misalignment between business and IT. The BEST way to establish alignment would be to require:
business to help define IT goals.
business to fund IT services.
IT to define business objectives.
IT and business to define risks.
Which of the following is the BEST way for a CIO to assess the consistency of IT processes against industry benchmarks to determine where to focus improvement initiatives?
Utilizing a capability maturity model
Evaluating the current balanced scorecard
Reviewing key performance measures
Reviewing IT process audit results
Which of the following is the BEST indication of an effective information governance model?
Senior management ensures quality goals are defined for information.
The CIO defines information accountability, quality criteria, and criticality.
Enterprise architects define information protection attributes.
Process owners determine which information assets will be managed.
Which of the following is the PRIMARY role of the CEO in IT governance?
Establishing enterprise strategic goals
Managing the risk governance process
Evaluating return on investment (ROI)
Nominating IT steering committee membership
Which of the following should a CIO review to obtain a holistic view of IT performance when identifying potential gaps in service delivery?
Key performance indicators (KPIs)
Return on investment (ROI) analysis
Service level agreement (SLA) reporting
Staff performance evaluations
Which of the following should be considered FIRST when assessing the implications of new external regulations on IT compliance?
IT policies and procedures that need revision
Resource burden for implementation
Gaps in skills and experience of IT employees
Impact on contracts with service providers
Question