Isaca COBIT 2019 Practice Test - Questions Answers, Page 16
List of questions
Related questions
What is the PRIMARY benefit of conducting a high-level risk analysis during governance design?
Establishing a risk response strategy
Identifying enterprise key risk indicators (KRl)
Prioritizing governance and management objectives
Communicating IT and business risk scenarios
Which of the following functions would be responsible for executing a contract that retains independent legal consultants to review the level of regulatory compliance of a proposed IT solution?
Procurement office
l&T security
Executive leadership team
Legal office
Which of the following is an important component for an enterprise strategy archetype of growth/acquisition as defined by COBIT 2019?
Support for the portfolio management role with an investment office
Important influence of culture and behavior component for innovation
Skills and competencies
Services, infrastructure, and applications component
Who is accountable for monitoring the performance of the execution of an EGIT implementation program plan against success metrics and adjusting long-term targets when necessary?
Board of directors
IT process owners
IT audit department
CIO
An enterprise plans to outsource all of its noncore IT operations but wants to ensure the proper level of governance, risk and compliance (GRC) controls. Which of the following governance and management objectives would provide the MOST relevant management practices for the enterprise?
AP012 Managed Risk
APO10 Managed Vendors
AP013 Managed Security
APO09 Managed Service Agreements
A CIO of a global enterprise has been mandated by the board to change the IT organizational structure from a divisional model to a centralized model and adopt outsourcing as required. The CIO identifies specific design factors that increase the importance of certain governance and management objectives. Which of the following is MOST likely to increase as a result?
Risk appetite and tolerance
Capability levels
Threat landscape
IT deployment
Which projects should be included when reporting on performance measurements related to an EGIT implementation program plan?
All projects
Only projects that require corrective action
All projects deemed appropriate by IT management
Only projects that are achieving desired results
Responsibility for developing an EGIT business case outline and details resides with which of the following?
IT managers and IT process owners
CIO and program steering committee
Board of directors and business executives
Risk and compliance function and IT audit
Which of the following is a strategy archetype focused on increasing revenues?
Innovation/differentiation
Client service/stability
Growth/acquisition
Cost leadership
Which of the following industry sectors can be characterized by a low level of regulation and a high level of focus on cost?
Financial sector
Public sector agencies
Nonprofit enterprises
Health care providers
Question