ISACA CGEIT ISACA CGEIT Certification Practice Test Online Training
ISACA CGEIT Online Training
The questions for CGEIT were last updated at Nov 23,2024.
- Exam Code: CGEIT
- Exam Name: ISACA CGEIT Certification Practice Test
- Certification Provider: ISACA
- Latest update: Nov 23,2024
Which of the following is MOST important to effectively initiate IT-enabled change?
- A . Establish a change management process.
- B . Obtain top management support and ownership.
- C . Ensure compliance with corporate policy.
- D . Benchmark against best practices.
Which of the following would BEST help to improve an enterprise’s ability to manage large IT investment projects?
- A . Creating a change management board
- B . Reviewing and evaluating existing business cases
- C . Implementing a review and approval process for each phase
- D . Publishing the IT approval process online for wider scrutiny
A business case indicates an enterprise would reduce costs by implementing a bring your own device (BYOD) program allowing employees to use personal devices for email.
Which of the following should be the FIRST governance action?
- A . Assess the enterprise architecture (EA).
- B . Update the network infrastructure.
- C . Update the BYOD policy.
- D . Assess the BYOD risk.
The CIO of a financial services company is tasked with ensuring IT processes are in compliance with recently instituted regulatory changes.
The FIRST course of action should be to:
- A . align IT project portfolio with regulatory requirements.
- B . create an IT balanced scorecard.
- C . identify the penalties for noncompliance.
- D . perform a current state assessment.
The CIO of an enterprise learns the payroll server of a competitor has been the victim of ransomware.
To help plan for the possibility of ransomed corporate data, what should be the ClO’s FIRST course of action?
- A . Require development of key risk indicators (KRls).
- B . Develop a policy to address ransomware.
- C . Request a targeted risk assessment.
- D . Back up corporate data to a secure location.
Which of the following aspects of the transition from X-rays to digital images would be BEST addressed by implementing information security policy and procedures?
- A . Establishing data retention procedures
- B . Training technicians on acceptable use policy
- C . Minimizing the impact of hospital operation disruptions on patient care
- D . Protecting personal health information
Prior to decommissioning an IT system, it is MOST important to:
- A . assess compliance with environmental regulations.
- B . assess compliance with the retention policy.
- C . review the media disposal records.
- D . review the data sanitation records.
A CEO determines the enterprise is lagging behind its competitors in consumer mobile offerings, and mandates an aggressive rollout of several new mobile services within the next 12 months.
To ensure the IT organization is capable of supporting this business objective, what should the CIO do FIRST?
- A . Request an assessment of current in-house mobile technology skills.
- B . Create a sense of urgency with the IT team that mobile knowledge is mandatory.
- C . Procure contractors with experience in mobile application development.
- D . Task direct reports with creating training plans for their teams.
Which of the following is the MOST effective way for a CIO to govern business unit deployment of shadow IT applications in a cloud environment?
- A . Implement controls to block the installation of unapproved applications.
- B . Educate the executive team about the risk associated with shadow IT applications.
- C . Provide training to the help desk to identify shadow IT applications.
- D . Review and update the application implementation process.
Before an IT strategy committee can approve an IT risk assessment framework, which of the following is MOST important to have established?
- A . An enterprise risk mitigation strategy
- B . Leading and lagging risk indicators
- C . IT performance metrics and standards
- D . Enterprise definitions for risk impact and probability