We will provide one year free update for you after purchase of our study material, thus you can get the newest questions and prepare well for the real test. Before purchase, you can try our free demo questions to check the basic information about our pdf torrent.

[Nov 19, 2023] ExamsReviews CGEIT dumps & Isaca Certificaton sure practice dumps [Q170-Q190]

Share

[Nov 19, 2023] ExamsReviews CGEIT dumps & Isaca Certificaton sure practice dumps

ISACA CGEIT Actual Questions and Braindumps

NEW QUESTION # 170
A large retail chain realizes that while there has not been any loss of data, IT security has not been a priority and should become a key goal for the enterprise. What should be the FIRST high-level initiative for a newly created IT strategy committee in order to support this business goal?

  • A. Recruiting and training qualified IT security staff
  • B. Identifying gaps in information asset protection
  • C. Defining data archiving and retrieval policies
  • D. Modernizing internal IT security practices

Answer: B


NEW QUESTION # 171
You are the project manager of a computer upgrade project. You and the vendor are in dispute over the deliverables the vendor was to provide and configure. What document can best describe how you and the vendor are to proceed if there is a claim against the vendor?

  • A. Enterprise environmental factors
  • B. Procurement management plan
  • C. Project cost management plan
  • D. Contract

Answer: D


NEW QUESTION # 172
An independent consultant has been hired to conduct an ad hoc audit of an enterprise's information security office with results reported to the IT governance committee and the board. Which of the following is MOST important to provide to the consultant before the audit begins?

  • A. The scope and stakeholders of the audit
  • B. The organizational structure of the security office
  • C. Acceptance of the audit risks and opportunities
  • D. The polices and framework used by the security office

Answer: A


NEW QUESTION # 173
An enterprise experiencing issues with data protection and least privilege is implementing enterprise-wide data encryption in response. Which of the following is the BEST approach to ensure all business units work toward remediating these issues?

  • A. Mandate the creation of a data governance framework.
  • B. Integrate data encryption requirements into existing and planned projects.
  • C. Assign owners for data governance initiatives.
  • D. Develop key performance indicators (KPIs) to measure enterprise adoption.

Answer: B


NEW QUESTION # 174
A large enterprise's IT department has identified a new risk management solution that would significantly enhance IT risk monitoring processes. However, there is a business perception that the new solution would not provide a visible benefit to the enterprise. Which of the following is the BEST way to gain business support?

  • A. Articulate the business value of the new solution.
  • B. Obtain sign-off on a reduced headcount over the next five years.
  • C. Provide real time risk reporting to the business.
  • D. Promote the IT benefits and the streamlining of processes.

Answer: D


NEW QUESTION # 175
Senior management is reviewing the results of a recent security incident with significant business impact.
Which of the following findings should be of GREATEST concern?

  • A. Significant gaps are present m the incident documentation.
  • B. Response efforts had to be outsourced due to insufficient internal resources.
  • C. The incident was not logged in the ticketing system.
  • D. Response decisions were made without consulting the appropriate authority.

Answer: D


NEW QUESTION # 176
An enterprise can BEST assess the benefits of a new IT project through its life cycle by:

  • A. periodic review of the business case.
  • B. calculation of the total cost of ownership.
  • C. periodic measurement of the project slip rate.
  • D. calculation of the net present value.

Answer: A


NEW QUESTION # 177
Which of the following areas addresses the safeguarding of IT assets, disaster recovery and continuity of operations?

  • A. Performance measurement
  • B. Strategic alignment
  • C. Risk management
  • D. Value delivery

Answer: C

Explanation:
Section: Volume C


NEW QUESTION # 178
Which of the following best describes the identification, analysis, and ranking of risks?

  • A. Design of experiments
  • B. Fixed-price contracts
  • C. Plan Risk management
  • D. Fast tracking

Answer: C


NEW QUESTION # 179
An enterprise is planning a transformation initiative by leveraging emerging technology that will have a significant impact on existing products and services Which of the following is the BEST way for IT to prepare for this change?

  • A. Analyze emerging technology products and related training needs.
  • B. Procure appropriate resources to support emerging technology
  • C. Use a balanced scorecard to measure IT outcomes.
  • D. Assess the impact on the existing IT strategy

Answer: C


NEW QUESTION # 180
Of the following, who is MOST appropriate to evaluate the potential benefits of an IT-enabled investment?

  • A. Portfolio management officer
  • B. External IT auditor
  • C. Chief information officer
  • D. Business sponsor

Answer: C


NEW QUESTION # 181
Software Development Life Cycle (SDLC) is a logical process used by programmers to develop software.
Which of the following SDLC phases meets the audit objectives defined below?
* System and data are validated.
* System meets all user requirements.
* System meets all control requirements.

  • A. Programming and training
  • B. Definition
  • C. Initiation
  • D. Evaluation and acceptance

Answer: D


NEW QUESTION # 182
Which of the following risk functions directs the Sarbanes-Oxley Section 302 and 404 assessments?

  • A. Operational Quality Assurance
  • B. Compliance & Ethics
  • C. Accounting / Financial compliance
  • D. Operations management

Answer: C


NEW QUESTION # 183
You are the project manager of a large project that will last four years. In this project, you would like to model the risk based on its distribution, impact, and other factors.
There are three modeling techniques that a project manager can use to include both event-oriented and project oriented analysis. Which modeling technique does NOT provide event-oriented and project oriented analysis for identified risks?

  • A. Expected monetary value
  • B. Jo-Hari Window
  • C. Modeling and simulation
  • D. Sensitivity analysis

Answer: B

Explanation:
Section: Volume A


NEW QUESTION # 184
Which of the following is the MOST appropriate mechanism for measuring overall IT organizational performance?

  • A. IT balanced scorecard
  • B. Maturity model
  • C. IT portfolio return on investment (ROI)
  • D. Service level metrics

Answer: A


NEW QUESTION # 185
A strategic IT-enabled investment is failing due to unforeseen technology problems. What should be the board of directors' FIRST course of action?

  • A. Approve an investment budget increase.
  • B. Terminate the investment.
  • C. Assess the business risk and options.
  • D. Revise the investment selection process.

Answer: C


NEW QUESTION # 186
The board of directors of an enterprise has approved a three-year IT strategic program to centralize the core business processes of its global entities into one core system. Which of the following should be the ClO's NEXT step?

  • A. Determine resource requirements for program implementation.
  • B. Require the development of a program roadmap.
  • C. Require the development of a risk management plan.
  • D. Engage a team to perform a business impact analysis (BIA).

Answer: B


NEW QUESTION # 187
Beth is a project team member on the JHG Project. Beth has added extra features to the project and this has introduced new risks to the project work. The project manager of the JHG project elects to remove the features Beth has added. The process of removing the extra features to remove the risks is called what?

  • A. Corrective action
  • B. Scope creep
  • C. Preventive action
  • D. Defect repair

Answer: C

Explanation:
Section: Volume A


NEW QUESTION # 188
Which of the following should be management's GREATEST consideration when trying to optimize the use of benefits from IT?

  • A. Quality management
  • B. Alignment of business to IT
  • C. Value delivery
  • D. Process improvement

Answer: C


NEW QUESTION # 189
A business is considering a policy to anonymize personal data in enterprise systems. Before making a decision, which of the following is MOST important for the IT steering committee to consider?

  • A. Potential implementation barriers
  • B. Regulatory requirements
  • C. Business impact analysis (BIA) results
  • D. Sustainability costs to the enterprise

Answer: B


NEW QUESTION # 190
......

Latest CGEIT Pass Guaranteed Exam Dumps with Accurate & Updated Questions: https://easypass.examsreviews.com/CGEIT-pass4sure-exam-review.html