Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ecus65

Isaca CGEIT - Certified in the Governance of Enterprise IT Exam

Page: 3 / 14
Total 682 questions

A board of directors has mandated that key performance indicators (KPIs) be developed for all IT projects that are created in support of a business objective. Which of the following MUST be reflected in the KPIs to be effective?

A.

Future-state architecture

B.

Critical success factors (CSFs)

C.

Portfolio management principles

D.

Key risk indicators (KRIs)

An IT governance committee is reviewing its current risk management policy in light of increased usage of social media within an enterprise. The FIRST task for the governance committee is to:

A.

recommend blocking access to social media.

B.

review current level of social media usage.

C.

initiate an assessment of the impact on the business.

D.

reassess the enterprise's bring your own device (BYOD) policy.

An enterprise is considering outsourcing non-core IT processes. Which of the following should be the FIRST step?

A.

Update resource allocation policies.

B.

Issue a formal request for proposal (RFP) to outsourcing vendors.

C.

Establish service-level metrics for outsourced activities.

D.

Conduct a cost-benefit analysis for outsourcing.

Which of the following is the BEST way to express the value of financial investments in cybersecurity?

A.

Payback period

B.

Cost-benefit analysis

C.

Net present value (NPV)

D.

Internal rate of return (IRR)

An enterprise has decided to invest in Internet of Things (IoT) technology as part of its strategic plan. Which of the following presents the GREATEST risk to consider as part of the technical risk management process?

A.

Device vulnerabilities

B.

Technology integration

C.

Device performance

D.

Technology obsolescence

Which of the following provides the STRONGEST indication that IT governance is well established within an organizational culture?

A.

Benefits of IT governance are realized throughout the organization.

B.

There is awareness of IT metrics throughout the organization.

C.

IT governance defines how IT projects should be assessed.

D.

IT performance metrics are defined in the balanced scorecard.

An enterprise wants to establish key risk indicators (KRIs) in an effort to better manage IT risk. Which of the following should be identified FIRST?

A.

The enterprise risk appetite

B.

Key performance metrics

C.

Risk mitigation strategies

D.

Enterprise architecture (EA) components

Which of the following BEST helps to ensure that IT policies are

aligned with organizational strategies?

A.

The policies are approved by the board of directors.

B.

The policies are developed using a top-down approach.

C.

The policies are updated annually.

D.

The policies are periodically audited.

Which of the following is MOST important to ensure that IT project selections meet the enterprise’s business requirements?

A.

Development of an enterprise architecture (EA).

B.

Business participation in the selection of IT projects.

C.

Implementation of project stage gates.

D.

Creation of thorough business cases prior to IT project selection.

Which of the following is MOST important to effectively incorporate innovation and emerging technologies into an enterprise’s IT strategy?

A.

Implementing new technologies based on maturity roadmaps according to reputable consulting entities.

B.

Maintaining an IT strategy based on traditional technologies, supplemented by objectives for innovation.

C.

Establishing a formal innovation management process that involves IT and business stakeholders.

D.

Performing quarterly feedback reviews with focus groups representing the enterprise’s customer base.

When reporting key risk indicators (KRIs) to the board, what information BEST enables risk-based decision-making?

A.

Risk appetite, risk threshold, and risk tolerance

B.

Classification of current business risk

C.

Emerging industry risk trends and benchmarks

D.

Costs and resource needs related to risk mitigation measures

An enterprise has a centralized IT function but also allows business units to have their own technology operations, resulting in duplicate technologies and conflicting priorities. Which of the following should be done FIRST to reduce the complexity of the IT landscape?

Promote automation tools used by the business units.

A.

Conduct strategic planning with business units.

B.

Migrate all in-house systems to an external cloud environment.

C.

Standardize technology architecture on common products.

Which of the following is the MOST important reason that IT strategic planning processes need to be adequately documented and communicated?

A.

To justify spending on IT projects

B.

To promote transparency to stakeholders

C.

To ensure other departments are aligned with the direction set by IT

D.

To inform business units of IT department achievements

What is the BEST way to demonstrate alignment of IT projects with long-term business objectives?

A.

Service level agreements (SLAs)

B.

Portfolio management

C.

Enterprise architecture (EA)

D.

Business impact analysis (BIA)

To measure the value of IT-enabled investments, an enterprise needs to identify its drivers as defined by its:

A.

technology strategy.

B.

value statements.

C.

service level agreements (SLAs).

D.

business strategy.