Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

CGEIT Isaca Exam Lab Questions

Page: 25 / 52
Total 692 questions

Certified in the Governance of Enterprise IT Exam Questions and Answers

Question 97

An enterprise has well-designed procurement and vendor risk management policies that are intended to prevent biased decision-making. However, a pattern of ethical violations indicates that vendor selection may have been inappropriately influenced by non-work-related incentives provided to decision makers. Which of the following should be done FIRST in response to this issue?

Options:

A.

Revise the procurement and vendor risk management policies.

B.

Conduct a root cause analysis and remediate based on findings.

C.

Document the critical success factors (CSFs) for the procurement policies.

D.

Establish and communicate strict penalties for biased vendor selection.

Question 98

What should be the FIRST action of a new CIO when considering an IT governance framework for an enterprise?

Options:

A.

Develop an IT balanced scorecard to monitor and track IT performance.

B.

Verify stakeholder sponsorship of the IT governance initiative.

C.

Understand corporate culture and IT’s role in providing business value.

D.

Understand critical IT processes to define the scope of the IT governance framework.

Question 99

The MOST appropriate method for evaluating the capability of IT governance is through the use of:

Options:

A.

a maturity assessment.

B.

benchmarking.

C.

a cost-benefit analysis.

D.

a risk assessment.

Question 100

Which of the following is the MOST effective approach to ensure senior management sponsorship of IT risk management?

Options:

A.

Calculate financial impact for each IT risk finding.

B.

Benchmark the risk framework against best practices.

C.

Integrate IT risk into enterprise risk management (ERM).

D.

Periodically review the IT risk register entries.

Page: 25 / 52
Total 692 questions