Best ISACA CGEIT Exam Practice Material Updated on Nov 18, 2023 [Q281-Q305]

Share

Best ISACA CGEIT Exam Practice Material Updated on Nov 18, 2023

New CGEIT Actual Exam Dumps,  ISACA Practice Test

NEW QUESTION # 281
Which of the following BEST supports an enterprise's ability to comply with privacy laws and regulations?

  • A. Complete inventory of enterprise data
  • B. Robust enterprise policy related to data retention
  • C. Implementation of a breach notification process
  • D. Accurate classification of enterprise data

Answer: D


NEW QUESTION # 282
An enterprise is replacing its customer relationship management (CRM) system with a cloud-based system. Which of the following should be done FIRST when preparing for data migration"*

  • A. Establish a data quality plan
  • B. Review the enterprise data architecture.
  • C. Consult the quality assurance (QA) function.
  • D. Acquire data migration tools.

Answer: A


NEW QUESTION # 283
Which of the following problems occur with performance measurement systems that limit their usefulness?
Each correct answer represents a complete solution. Choose all that apply.

  • A. It is dependent on historical patterns and reluctant to accept new structural changes that are capable of generating different outcomes
  • B. It is dependent on the timely occurrence of corrective action which is required for effective management control.
  • C. It is dependent on summary data, which emphasizes averages and discounts outliers.
  • D. It is dependent on gross aggregates, which tend to understate or ignore distributional contributions and consequences.

Answer: A,C,D


NEW QUESTION # 284
An enterprise has decided to create its first mobile application. The IT director is concerned about the potential impact of this initiative. Which of the following is the MOST important input for managing the risk associated with this initiative?

  • A. Enterprise architecture (EA)
  • B. Business requirements
  • C. Enterprise risk appetite
  • D. IT risk scorecard

Answer: C


NEW QUESTION # 285
Which of the following is the MOST valuable input when quantifying the loss associated with a major risk event?

  • A. Key risk indicators (KRIs)
  • B. Business impact analysis (BIA) report
  • C. IT environment threat modeling
  • D. Recovery time objectives (RTOs)

Answer: B


NEW QUESTION # 286
The PRIMARY reason for implementing an IT governance program in an enterprise is to

  • A. comply with regulatory requirements
  • B. balance the demand for information and the ability to deliver.
  • C. decrease the scale of investment in information systems due to budgetary controls.
  • D. reduce risks due to improved compensating controls.

Answer: B


NEW QUESTION # 287
Which of the following is the MOST appropriate mechanism for measuring overall IT organizational performance?

  • A. IT portfolio return on investment (ROI)
  • B. Maturity model
  • C. IT balanced scorecard
  • D. Service level metrics

Answer: C


NEW QUESTION # 288
Prior to decommissioning an IT system, it is MOST important to:

  • A. assess compliance with environmental regulations.
  • B. review the data sanitization records.
  • C. assess compliance with the retention policy.
  • D. review the media disposal records.

Answer: B

Explanation:
Explanation


NEW QUESTION # 289
Which of the following individuals/team allocates business resources for effective IT governance?

  • A. CEO
  • B. IT Strategy Committee
  • C. CIO
  • D. Business Executive

Answer: D


NEW QUESTION # 290
Which of the following objectives are used by the system to decrease costs or revenues?

  • A. Improving product quality
  • B. Creating new distribution channels
  • C. Increasing production rates
  • D. Decreasing production and operating costs

Answer: A,C,D

Explanation:
Section: Volume C


NEW QUESTION # 291
Which of the following is the MOST important consideration when developing a new IT service'?

  • A. Return on investment (ROI)
  • B. Service level agreements (SLAs)
  • C. Economies of scale
  • D. Resource requirements.

Answer: A


NEW QUESTION # 292
Which of the following would be MOST important to update if a decision is made to ban end user-owned devices in the workplace?

  • A. Employee nondisclosure agreement
  • B. Enterprise acceptable use policy
  • C. Enterprise risk appetite statement
  • D. Orientation training materials

Answer: B


NEW QUESTION # 293
When assessing the impact of a new regulatory requirement, which of the following should be the FIRST course of action?

  • A. Update affected IT policies.
  • B. Implement new regulatory requirements.
  • C. Assess the budget impact of the new regulation.
  • D. Map the regulation to business processes.

Answer: D


NEW QUESTION # 294
A project sponsor has circumvented the request for proposal (RFP) selection process. Which of the following is the MOST likely reason for this control gap?

  • A. Inadequate board oversight
  • B. Lack of a legal and regulatory review process
  • C. Inadequate stage-gate reviews
  • D. Lack of accountability for policy adherence

Answer: D


NEW QUESTION # 295
When considering an IT change that would enable a potential new line of business, the FIRST strategic step for IT governance would be to ensure agreement among the stakeholders regarding:

  • A. metrics to measure effectiveness
  • B. a vision for the future state,
  • C. objectives to achieve goals.
  • D. a change response plan

Answer: B


NEW QUESTION # 296
Service Transition contains detailed descriptions of which of the following processes?

  • A. Change Management, Capacity Management, Event Management, and Service Request Management
  • B. Service Level Management, Service Portfolio Management, Service Asset and Configuration Management
  • C. Change Management, Service Asset and Configuration Management, Release and Deployment Management
  • D. Service Asset and Configuration Management, Release Management, and Request Fulfillment

Answer: C


NEW QUESTION # 297
Which of the following essential elements of IT Portfolio Investment Management drives better decisions by providing real-time portfolio performance information in personalized views, such as cost/benefit summary, risk versus reward, ROI versus alignment, and balance bubble charts?

  • A. Workflow, Process Management, Tracking and Authorization
  • B. Portfolio What-If Planning
  • C. Portfolio Management
  • D. Integrated Dashboards and Scorecards

Answer: D


NEW QUESTION # 298
You are hosting a collection of stakeholders from across the organization to identify the ideas and attitudes about your company's help desk. You want the stakeholders to honestly share their opinions about the help desk service so you can identify problems, solutions, and take actions to improve the service. What type of requirements elicitation activity is this?

  • A. Stakeholder analysis
  • B. Focus groups
  • C. Workshop
  • D. Root cause analysis

Answer: B


NEW QUESTION # 299
You work as a project manager for TYU project. You are planning for risk mitigation.
You need to identify the risks that will need a more in-depth analysis. Which of the following activities will help you in this?

  • A. Quantitative analysis
  • B. Estimate activity duration
  • C. Qualitative analysis
  • D. Risk identification

Answer: C

Explanation:
Section: Volume A


NEW QUESTION # 300
A business has outsourced IT operations to several third-party providers, but service level agreements (SLAs) are not clearly defined in all cases. Which of the following is the GREATEST risk to the business?

  • A. Costs are not measurable.
  • B. Quality of services is not enforceable.
  • C. Third parties could provide overlapping services.
  • D. The scope of work is not clearly defined.

Answer: B


NEW QUESTION # 301
Which of the following provides the BEST assurance on the effectiveness of IT service management processes?

  • A. Key risk indicators (KRIs)
  • B. Continuous monitoring
  • C. Compliance with internal controls
  • D. Performance of incident response

Answer: B


NEW QUESTION # 302
Which of the following terms includes performance objectives and criteria (POCs), performance indicators, and any other means that evaluate the success in achieving a specified goal?

  • A. Precision
  • B. Performance Measurement Category
  • C. Performance Measure
  • D. Performance Measurement System

Answer: C


NEW QUESTION # 303
A large financial institution is considering outsourcing customer call center operations which will allow the chosen vendor to access systems from offshore locations. Which of the following represents the GREATEST risk?

  • A. Lack of network availability
  • B. Inconsistent customer service and reporting
  • C. Loss of data confidentiality
  • D. Inadequate business continuity planning

Answer: C


NEW QUESTION # 304
In a large enterprise, which of the following should be responsible for the implementation of an IT balanced scorecard?

  • A. Chief risk officer (CRO)
  • B. Chief information officer (CIO)
  • C. IT steering committee
  • D. Project management office

Answer: D


NEW QUESTION # 305
......

Study HIGH Quality CGEIT Free Study Guides and Exams Tutorials: https://www.test4sure.com/CGEIT-pass4sure-vce.html

Download ISACA CGEIT Exam Dumps to Pass Exam Easily: https://drive.google.com/open?id=1sP15gpXOjgIPbiSsll2703j3wCi4UAI1