Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

CGEIT Certified in the Governance of Enterprise IT Exam is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

CGEIT Practice Questions

Certified in the Governance of Enterprise IT Exam

Last Update 3 days ago
Total Questions : 692

Dive into our fully updated and stable CGEIT practice test platform, featuring all the latest Isaca Certification exam questions added this week. Our preparation tool is more than just a Isaca study aid; it's a strategic advantage.

Our free Isaca Certification practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about CGEIT. Use this test to pinpoint which areas you need to focus your study on.

CGEIT PDF

CGEIT PDF (Printable)
$43.75
$124.99

CGEIT Testing Engine

CGEIT PDF (Printable)
$50.75
$144.99

CGEIT PDF + Testing Engine

CGEIT PDF (Printable)
$63.7
$181.99
Question # 16

An enterprise has lost an unencrypted backup tape of archived customer data. A data breach report is not mandatory in the relevant jurisdiction. From an ethical standpoint, what should the enterprise do NEXT?

Options:

A.  

Initiate disciplinary proceedings against relevant employees.

B.  

Mandate a review of backup tape inventory procedures.

C.  

Communicate the breach to customers.

D.  

Require an evaluation of storage facility vendors.

Discussion 0
Question # 17

An enterprise is about to complete a major acquisition, and a decision has been made that both companies will be using the parent company's IT infrastructure. Which of the following should be done NEXT?

Options:

A.  

Update the enterprise architecture (EA).

B.  

Perform a business impact analysis (BI

A.  

C.  

Conduct a gap analysis.

D.  

Develop a communication plan to support the merger.

Discussion 0
Question # 18

A large enterprise has been experiencing high turnover of skilled IT personnel, resulting in a significant loss of knowledge within the IT department. Which of the following is the BEST governance action to address this concern?

Options:

A.  

Update the IT resource management plan.

B.  

Revise IT strategic objectives.

C.  

Update IT employee compensation packages.

D.  

Mandate the use of employee contracts.

Discussion 0
Question # 19

An enterprise wants to address the human factors of social engineering risk within the organization. From a governance perspective, which of the following is the BEST way to mitigate this risk?

Options:

A.  

Distribute the social media information security policy to staff.

B.  

Mandate annual security awareness training.

C.  

Restrict access to social media.

D.  

Mandate security requirements be included in employee contracts.

Discussion 0
Question # 20

The CIO of a financial and insurance company is considering the projects and portfolio for the coming year Which of the following projects is a non-discretionary project?

Options:

A.  

Data center relocation

B.  

Compliance with statutory regulations

C.  

Actuarial application system analysis and design

D.  

Core banking applications scalability assessment

Discussion 0
Question # 21

An IT strategy committee wants to evaluate how well the IT department supports the business strategy. Which of the following is the BEST method for making this determination?

Options:

A.  

Capability maturity assessment

B.  

Customer survey analysis

C.  

IT balanced scorecard reporting

D.  

IT controls assurance program

Discussion 0
Question # 22

Which of the following activities MUST be completed before developing an IT strategic plan?

Options:

A.  

Review the enterprise business plan

B.  

Align the enterprise vision statement with business processes

C.  

Develop an enterprise architecture (EA) framework

D.  

Review the enterprise risk tolerance level

Discussion 0
Question # 23

A CIO just received a final audit report that indicates there is inconsistent enforcement of the enterprise's mobile device acceptable use policy throughout all business units. Which of the following should be the FIRST step to address this issue?

Options:

A.  

Incorporate compliance metrics into performance goals.

B.  

Review the relevance of existing policy.

C.  

Mandate awareness training for all mobile device users.

D.  

Implement controls to enforce the policy.

Discussion 0
Question # 24

A large enterprise that is diversifying its business will be transitioning to a new software platform, which is expected to cause data changes. Which of the following should be done FIRST when developing the related metadata management process?

Options:

A.  

Require an update to enterprise data policies.

B.  

Request an impact analysis.

C.  

Review documented data interdependence.

D.  

Validate against existing architecture.

Discussion 0
Question # 25

Which of the following BEST reflects the ethical values adopted by an IT organization?

Options:

A.  

IT principles and policies

B.  

IT balanced scorecard

C.  

IT governance framework

D.  

IT goals and objectives

Discussion 0
Question # 26

Which of the following BEST indicates that a change management process has been implemented successfully?

Options:

A.  

Maturity levels

B.  

Degree of control

C.  

Process performance

D.  

Outcome measures

Discussion 0
Question # 27

An IT director has become aware that a certain subset of data collected lawfully can be used to generate additional revenue. However, this particular use of the data is outside the original intention. What is the PRIMARY reason this situation should be escalated to the IT steering committee?

Options:

A.  

Potential legal penalties

B.  

Ethical concerns

C.  

Regulatory requirements

D.  

Data protection

Discussion 0
Question # 28

An IT governance committee wants to ensure there is a clear description of the "data owner" in the enterprise data policy. Which of the following would BEST define the owner of data stored in an external cloud?

Options:

A.  

The business leader who is most impacted by the loss of data.

B.  

The risk manager who is responsible for protecting data stored in the cloud.

C.  

The contract manager who monitors the security of the cloud provider.

D.  

The vendor who submits the data to the organization via online forms

Discussion 0
Question # 29

A healthcare enterprise that is subject to strict compliance requirements has decided to outsource several key IT services to third-party providers. Which of the following would be the BEST way to assess compliance and avoid reputational damage?

Options:

A.  

Require quarterly reports from the providers demonstrating compliance.

B.  

Require documentation that the providers have adequate controls in place.

C.  

Exercise the right to perform an audit.

D.  

Impose monetary penalties for noncompliance.

Discussion 0
Question # 30

Which of the following is PRIMARILY achieved through performance measurement?

Options:

A.  

Process improvement

B.  

Transparency

C.  

Cost efficiency

D.  

Benefit realization

Discussion 0
Get CGEIT dumps and pass your exam in 24 hours!

Free Exams Sample Questions