ISACA CGEIT ISACA CGEIT Certification Practice Test Online Training
ISACA CGEIT Online Training
The questions for CGEIT were last updated at Nov 23,2024.
- Exam Code: CGEIT
- Exam Name: ISACA CGEIT Certification Practice Test
- Certification Provider: ISACA
- Latest update: Nov 23,2024
An IT director is negotiating a contract with a vendor for application management services. There is concern by other departments that the outsourced services may not be delivered successfully.
Which of the following is the BEST way for the IT director to address this concern?
- A . Implement a communication management plan.
- B . Develop a comprehensive vendor management plan.
- C . Review the IT service risk management plan.
- D . Establish a policy on operational level agreements with vendors.
Which of the following is the BEST IT architecture concept to ensure consistency, interoperability, and agility for infrastructure capabilities?
- A . Establishment of an IT steering committee
- B . Standards-based reference architecture and design specifications
- C . Establishment of standard vendor and technology designations
- D . Design of policies and procedures
A company is considering selling products online, and the CIO has been asked to advise the board of directors of potential problems with this strategy.
Which of the following is the ClO’s BEST course of action?
- A . Review the security framework.
- B . Conduct a return on investment (ROI) analysis.
- C . Review the enterprise architecture (EA).
- D . Perform a risk assessment.
In a large enterprise, which of The following is the MOST effective way to understand the business activities associated with the enterprise’s information architecture?
- A . Reviewing IT design with business process managers
- B . Reviewing business strategy with senior management
- C . Mapping business processes within a framework
- D . Aligning business objectives to organizational strategy
A board of directors is concerned that a major IT implementation has the potential to significantly disrupt enterprise operations.
Which of the following would be MOST helpful in identifying the extent of the potential impact of the disruption?
- A . An analysis of the current enterprise risk appetite
- B . An earned value analysis (EVA) of the implementation
- C . A risk assessment of the implementation
- D . A review of lessons learned from previous implementations
Which of the following is the MOST comprehensive method to report on overall IT performance to the board of directors?
- A . Balanced scorecard
- B . Net present value (NPV)
- C . Performance-based payments
- D . Return on investment (ROI)
A CIO has been asked to modify an organization’s IT performance measurement system to reflect recent changes in technology, including the movement of some data processing to a cloud solution.
Which of the following is the PRIMARY consideration when designing such a measurement system?
- A . Ensuring that cost of measurement and reporting is minimized
- B . Ensuring the measurement system maps to the enterprise architecture (EA)
- C . Adequately defining the scope of services moved to the cloud
- D . Correctly understanding stakeholder needs for IT-related measurement
Which of the following MOST effectively demonstrates operational readiness to address information security risk issues?
- A . Executive management has announced an information security risk initiative.
- B . IT management has communicated the need for information security risk management to the business.
- C . A policy has been communicated stating enterprise commitment and readiness to address information security risk.
- D . Procedures have been established for assessing and mitigating information security risks.
An enterprise’s CIO requires all IT processes within the enterprise to be clearly defined.
Which of the following would be the MOST immediate outcome?
- A . Performance
- B . Repeatability
- C . Scalability
- D . Optimization
Best practice states that IT governance MUST:
- A . enforce consistent policy across the enterprise.
- B . be applied in the same manner throughout the enterprise.
- C . apply consistent target levels of maturity to processes.
- D . be a component of enterprise governance.