ISACA CGEIT Exam Practice Questions (P. 5)
- Full Access (472 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #41
An IT governance committee recently received a report indicating a scarcity of key IT skills in the marketplace to meet the core needs of the business. Reviewing which of the following would BEST help the committee respond to this situation?
- AIT balanced scorecard
- BOutsourcing strategy
- CIT strategic plan
- DHuman resource strategyMost Voted
Correct Answer:
D
D
send
light_mode
delete
Question #42
An enterprise has decided to create its first mobile application. The IT director is concerned about the potential impact of this initiative. Which of the following is the MOST important input for managing the risk associated with this initiative?
- ABusiness requirements
- BIT risk scorecard
- CEnterprise risk appetiteMost Voted
- DEnterprise architecture (EA)
Correct Answer:
A
A
send
light_mode
delete
Question #43
Senior management has made a decision to automate a number of key controls due to concerns that current IT risk controls are overly cumbersome and adversely impacting IT agility. Which of the following should be required FIRST to facilitate this process?
- AControl gap analysis
- BControl self-assessments
- CControls optimization
- DCost-benefit analysisMost Voted
Correct Answer:
D
Reference:
https://resources.infosecinstitute.com/itac-planning/#gref
D
Reference:
https://resources.infosecinstitute.com/itac-planning/#gref
send
light_mode
delete
Question #44
The IT function received only 50% of the requested funding to support the IT strategy for new business initiatives. Which of the following is the CIO's MOST important course of action before considering alternative resource options?
- APrioritize the portfolio.Most Voted
- BTerminate less visible maintenance projects.
- CDevelop a new balanced scorecard.
- DConduct a cost-benefit analysis.
Correct Answer:
A
Reference:
https://hbr.org/1980/07/strategic-management-for-competitive-advantage
A
Reference:
https://hbr.org/1980/07/strategic-management-for-competitive-advantage
send
light_mode
delete
Question #45
A business case indicates an enterprise would reduce costs by implementing a bring your own device (BYOD) program allowing employees to use personal devices for e-mail. Which of the following should be the FIRST governance action?
- AAssess the enterprise architecture (EA).
- BUpdate the BYOD policy.
- CUpdate the network infrastructure.
- DAssess the BYOD risk.
Correct Answer:
A
A
send
light_mode
delete
Question #46
An enterprise has decided to implement an enterprise resource planning (ERP) system to achieve operating and cost efficiencies through global IT standardization. The business units are resistant because they are used to operating autonomously. The CEO has instructed the CIO to move quickly with the implementation to force acceptance with business unit leaders. Which of the following should be the CIO's FIRST step?
- ARequest funding from the CEO to hire ERP consultants.
- BAsk the CEO to be the sponsor of the program.
- CEngage a reluctant business unit to conduct a proof-of-concept pilot.Most Voted
- DBuild a governance framework for identifying non-standard processes.
Correct Answer:
D
D
send
light_mode
delete
Question #47
Which of the following is MOST critical to have in place before management can establish an IT risk assessment and response approach?
- AA portfolio of IT investments
- BDefined roles and responsibilitiesMost Voted
- CHistoric data on risk events
- DA balanced scorecard
Correct Answer:
B
B
send
light_mode
delete
Question #48
An IT audit report indicates that a lack of IT employee risk awareness is creating serious security issues in application design and configuration. Which of the following would be the BEST key risk indicator (KRI) to show progress in IT employee behavior?
- AResults of application security testing
- BResults of application security awareness training quizzes
- CNumber of reported security incidents
- DNumber of IT employees attending security training sessions
Correct Answer:
C
C
send
light_mode
delete
Question #49
An enterprise can BEST assess the benefits of a new IT project through its life cycle by:
- Acalculation of the total cost of ownership.
- Bcalculation of the net present value.
- Cperiodic review of the business case.
- Dperiodic measurement of the project slip rate.
Correct Answer:
C
C
send
light_mode
delete
Question #50
Which of the following is the MOST important objective of IT program portfolio management?
- AReduced technology costs
- BReduced project management costs
- CImproved IT service delivery
- DAppropriate investment mix
Correct Answer:
D
Reference:
https://www.northeastern.edu/graduate/blog/project-management-vs-portfolio-management-vs-program-management/
D
Reference:
https://www.northeastern.edu/graduate/blog/project-management-vs-portfolio-management-vs-program-management/
send
light_mode
delete
All Pages