[Nov 23, 2021] Fully Updated Isaca Certificaton (CGEIT) Certification Sample Questions [Q160-Q179]

Share

[Nov 23, 2021] Fully Updated Isaca Certificaton (CGEIT) Certification Sample Questions

Latest ISACA CGEIT Real Exam Dumps PDF


The benefit in Obtaining the CGEIT Exam Certification

  • ISACA Certified Governance of Enterprise IT have the knowledge to use the tools to complete the task efficiently and cost-effectively than the other non-certified professionals lack in doing so.
  • ISACA Certified Governance of Enterprise IT will be confident and stand different from others as their skills are more trained than non-certified professionals.
  • ISACA Certified Governance of Enterprise IT certification has more useful and relevant networks that help them in setting career goals for themselves. ISACA Certified Governance of Enterprise IT networks provide them with the right career direction than non certified usually are unable to get.
  • ISACA Certified Governance of Enterprise IT Certifications provide opportunities to get a job easily in which they are interested in instead of wasting years and ending without getting any experience.
  • ISACA Certified Governance of Enterprise IT Certification provides practical experience to candidates from all the aspects to be a proficient worker in the organization.
  • ISACA Certified Governance of Enterprise IT Certification is distinguished among competitors. ISACA Certified Governance of Enterprise IT certification can give them an edge at that time easily when candidates appear for a job interview, employers seek to notify something which differentiates the individual to another.

How much CGEIT Exam Cost

The price of the Isaca CGEIT exam is $465 for Members and $595 USD for Non-Members.

 

NEW QUESTION 160
Which of the following guides emphasizes on the fundamental steps for implementing information security within the enterprise, and provides easy to follow guidance for addressing security aspects of IT governance?

  • A. COBIT control practices guide
  • B. IT control for Sarbanes Oxley guide
  • C. IT assurance guide
  • D. COBIT security baseline guide

Answer: D

 

NEW QUESTION 161
Which of the following is MOST important to the successful implementation of enterprise architecture (EA)?

  • A. Developing data modeling tools
  • B. Establishing key performance indicators (KPIs)
  • C. Reducing the cost of IT investments
  • D. Managing the challenge of change

Answer: B

 

NEW QUESTION 162
Which of the following are parts of SWOT Analysis? Each correct answer represents a complete solution.
Choose all that apply.

  • A. Threats
  • B. Tools
  • C. Weaknesses
  • D. Optimism
  • E. Strengths
  • F. Opportunities

Answer: A,C,E,F

Explanation:
Section: Volume A
Explanation

 

NEW QUESTION 163
CORRECT TEXT
You are the project manager of the AMD project for your organization. In this project, you are currently performing quantitative risk analysis. The tool and technique you are using is simulation where the project model is computed many times with the input values chosen at random for each iteration. The goal is to create a probability distribution from the iterations for the project schedule. What technique will you use with this simulation?

  • A. Monte Carlo Technique
  • B. Pareto modeling
  • C. Expected Monetary Value
  • D. Analogous modeling

Answer: A

 

NEW QUESTION 164
Which of the following are the main objectives of the Performance measurement domain? Each correct answer represents a complete solution. Choose all that apply.

  • A. It statistically controls the process sequences.
  • B. It meets out the goals.
  • C. It defines value creation roles within IT.
  • D. It satisfies the customer's need.

Answer: A,B,D

Explanation:
Section: Volume A

 

NEW QUESTION 165
When evaluating benefits realization of IT process performance, the analysis MUST be based on;

  • A. IT risk policies.
  • B. key business objectives.
  • C. portfolio prioritization criteria.
  • D. industry standard key performance indicators (KPIs).

Answer: B

 

NEW QUESTION 166
Which of the following provides the BEST evidence of effective IT governance?

  • A. IT risk identification and mitigation
  • B. Business value and customer satisfaction
  • C. Comprehensive IT policies and procedures
  • D. Cost savings and human resource optimization

Answer: C

 

NEW QUESTION 167
Which of the following is the MOST effective way for a CIO to govern business unit deployment of shadow IT applications in a cloud environment?

  • A. Provide training to the help desk to identify shadow IT applications.
  • B. Review and update the application implementation process.
  • C. Educate the executive team about the risk associated with shadow IT applications.
  • D. Implement controls to block the installation of unapproved applications.

Answer: C

 

NEW QUESTION 168
Which of the following would BEST support an enterprise's initiative to incorporate desired organizational behaviors into the IT governance framework?

  • A. Enterprise code of ethics
  • B. Risk mitigation strategies and action plans
  • C. Documented consequences for noncompliance
  • D. Enterprise RACI matrix

Answer: A

 

NEW QUESTION 169
Which of the following groups should approve the implementation of new technology?

  • A. IT audit department
  • B. Portfolio management office
  • C. Program management office
  • D. IT steering committee

Answer: D

 

NEW QUESTION 170
Which of the following roles is accountable for the confidentiality integrity and availability of information within an enterprise?

  • A. Lead legal counsel
  • B. Data custodian
  • C. Data owner
  • D. Risk manager

Answer: C

 

NEW QUESTION 171
Which of the following processes contained in the Portfolio Management domain of Val IT creates an overall portfolio view?

  • A. PM9
  • B. PM8
  • C. PM7
  • D. PM10

Answer: A

Explanation:
Section: Volume C

 

NEW QUESTION 172
An enterprise's board of directors has asked the CIO to implement ways to make the IT function more environmentally responsible. Which of the following should be the CIO's FIRST step to ensure continued alignment of IT needs with the requirements of the board?

  • A. Assess potential environmentally responsible IT initiatives.
  • B. Create a staff awareness education plan focused on IT environmental responsibility.
  • C. Incorporate new environmentally responsible objectives into existing IT goals.
  • D. Write a business case for an environmentally responsible initiative for IT.

Answer: B

 

NEW QUESTION 173
Which of the following service delivery processes has the goal to produce, agreed on, timely, reliable, and accurate reports for the effective communication?

  • A. Information security management
  • B. Capacity management
  • C. Service reporting
  • D. Service level management

Answer: C

 

NEW QUESTION 174
Which of the following should be the PRIMARY consideration for an enterprise when prioritizing IT projects?

  • A. Process owner expectations based on operational benefits
  • B. Technical capability of the enterprise to execute the projects
  • C. Results of IT performance benchmarks against competitors
  • D. Impact on the business due to expected project outcomes

Answer: D

 

NEW QUESTION 175
Which of the following BEST indicates that a change management process has been implemented successfully?

  • A. Process performance
  • B. Degree of control
  • C. Maturity levels
  • D. Outcome measures

Answer: A

 

NEW QUESTION 176
Sensitivity analysis is a technique for systematically changing parameters in a model to determine the effects of such changes and is useful for computer modelers for a range of purposes. Which of the following purposes does the sensitivity analysis include? Each correct answer represents a complete solution. Choose all that apply.

  • A. Estimating the average outcome
  • B. Model development
  • C. Increased understanding or quantification of the system
  • D. Decision making or the development of recommendations for decision makers

Answer: B,C,D

 

NEW QUESTION 177
Which of the following is the BEST indication that information security requirements are taken into consideration when developing IT processes?

  • A. The information architecture incorporates data classification
  • B. The database is deployed in a distributed processing platform
  • C. Customer profiles are stored with a domestic service provider
  • D. The integrity of sensitive information is periodically reviewed

Answer: A

 

NEW QUESTION 178
All projects that are presented in your organization must go through a board to review the return on investment, risk, and worthiness of a project. All projects are considered but not all projects are initiated. What is the name of the process that this board is completing in your organization?

  • A. Change governance
  • B. Project selection committee
  • C. Project portfolio management board
  • D. Project portfolio management

Answer: D

 

NEW QUESTION 179
......


ISACA Governance of Enterprise IT Exam Syllabus Topics:

TopicDetailsWeights
Framework for the Governance of Enterprise IT

- Ensure the definition, establishment, and management of a framework for the governance of enterprise IT in alignment with the mission, vision and values of the enterprise.

Task Statements

  1. Ensure that a framework for the governance of enterprise IT is established and enables the achievement of enterprise goals and objectives to create stakeholder value, taking into account benefits realization, risk optimization, and resource optimization.
  2. Identify the requirements and objectives for the framework for the governance of enterprise IT incorporating input from enablers such as principles, policies and frameworks; processes; organizational structures; culture, ethics and behavior; information; services, infrastructure and applications; people, skills and competencies.
  3. Ensure that the framework for the governance of enterprise IT addresses applicable internal and external requirements (for example, principles, policies and standards, laws, regulations, service capabilities and contracts).
  4. Ensure that strategic planning processes are incorporated into the framework for the governance of enterprise IT.
  5. Ensure the incorporation of enterprise architecture (EA) into the framework for the governance of enterprise IT in order to optimize IT-enabled business solutions.
  6. Ensure that the framework for the governance of enterprise IT incorporates comprehensive and repeatable processes and activities.
  7. Ensure that the roles, responsibilities and accountabilities for information systems and IT processes are established.
  8. Ensure issues related to the framework for the governance of enterprise IT are reviewed, monitored, reported and remediated.
  9. Ensure that organizational structures are in place to enable effective planning and implementation of IT-enabled business investments.
  10. Ensure the establishment of a communication channel to reinforce the value of the governance of enterprise IT and transparency of IT costs, benefits and risk throughout the enterprise.
  11. Ensure that the framework for the governance of enterprise IT is periodically assessed, including the identification of improvement opportunities.

Knowledge Statements

  1. Knowledge of components of a framework for the governance of enterprise IT.
  2. Knowledge of IT governance industry practices, standards and frameworks (for example, COBIT, Information Technology Infrastructure Library [ITIL], International Organization for Standardization [ISO] 20000, ISO 38500).
  3. Knowledge of business drivers related to IT governance (for example, legal, regulatory and contractual requirements).
  4. Knowledge of IT governance enablers (for example, principles, policies and frameworks; processes; organizational structures; culture, ethics and behavior; information; services, infrastructure and applications; people, skills and competencies).
  5. Knowledge of techniques used to identify IT strategy (for example, SWOT, BCG Matrix).
  6. Knowledge of components, principles, and concepts related to enterprise architecture (EA).
  7. Knowledge of Organizational structures and their roles and responsibilities (for example, enterprise investment committee, program management office, IT strategy committee, IT architecture review board, IT risk management committee).
  8. Knowledge of methods to manage organizational, process and cultural change.
  9. Knowledge of models and methods to establish accountability for information requirements, data and system ownership; and IT processes.
  10. Knowledge of IT governance monitoring processes/mechanisms (for example, balanced scorecard (BSC).
  11. Knowledge of IT governance reporting processes/mechanisms.
  12. Knowledge of communication and promotion techniques.
  13. Knowledge of assurance methodologies and techniques.
  14. Knowledge of continuous improvement techniques and processes.
25%
Strategic Management

- Ensure that IT enables and supports the achievement of enterprise objectives through the integration and alignment of IT strategic plans with enterprise strategic plans.

Task Statements

  1. Evaluate, direct and monitor IT strategic planning processes to ensure alignment with enterprise goals.
  2. Ensure that appropriate policies and procedures are in place to support IT and enterprise strategic alignment.
  3. Ensure that the IT strategic planning processes and related outputs are adequately documented and communicated.
  4. Ensure that enterprise architecture (EA) is integrated into the IT strategic planning process.
  5. Ensure prioritization of IT initiatives to achieve enterprise objectives.
  6. Ensure that IT objectives cascade into clear roles, responsibilities and actions of IT personnel.

Knowledge Statements

  1. Knowledge of an enterprise’s strategic plan and how it relates to IT.
  2. Knowledge of strategic planning processes and techniques.
  3. Knowledge of impact of changes in business strategy on IT strategy.
  4. Knowledge of barriers to the achievement of strategic alignment.
  5. Knowledge of policies and procedures necessary to support IT and business strategic alignment.
  6. Knowledge of methods to document and communicate IT strategic planning processes (for example, IT dashboard/balanced scorecard, key indicators).
  7. Knowledge of components, principles and frameworks of enterprise architecture (EA).
  8. Knowledge of current and future technologies.
  9. Knowledge of prioritization processes related to IT initiatives.
  10. Knowledge of scope, objectives and benefits of IT investment programs.
  11. Knowledge of IT roles and responsibilities and methods to cascade business and IT objectives to IT personnel.
20%
Risk Optimization

- Ensure that an IT risk management framework exists to identify, analyze, mitigate, manage, monitor, and communicate IT-related business risk, and that the framework for IT risk management is in alignment with the enterprise risk management (ERM) framework.

Task Statements

  1. Ensure that comprehensive IT risk management processes are established to identify, analyze, mitigate, manage, monitor, and communicate IT risk.
  2. Ensure that legal and regulatory compliance requirements are addressed through IT risk management.
  3. Ensure that IT risk management is aligned with the enterprise risk management (ERM) framework.
  4. Ensure appropriate senior level management sponsorship for IT risk management.
  5. Ensure that IT risk management policies, procedures and standards are developed and communicated.
  6. Ensure the identification of key risk indicators (KRIs).
  7. Ensure timely reporting and proper escalation of risk events and responses to appropriate levels of management.

Knowledge Statements

  1. Knowledge of the application of risk management at the strategic, portfolio, program, project and operations levels.
  2. Knowledge of risk management frameworks and standards (for example, RISK IT, the Committee of Sponsoring Organizations of the Treadway Commission Enterprise Risk Management—Integrated Framework (2004) [COSO ERM], International Organization for Standardization (ISO) 31000).
  3. Knowledge of the relationship of the risk management approach to legal and regulatory compliance.
  4. Knowledge of methods to align IT and enterprise risk management (ERM).
  5. Knowledge of the relationship of the risk management approach to business resiliency (for example, business continuity planning [BCP] and disaster recovery planning [DRP]).
  6. Knowledge of risk, threats, vulnerabilities and opportunities inherent in the use of IT.
  7. Knowledge of types of business risk, exposures and threats (for example, external environment, internal fraud, information security) that can be addressed using IT resources
  8. Knowledge of risk appetite and risk tolerance.
  9. Knowledge of quantitative and qualitative risk assessment methods.
  10. Knowledge of risk mitigation strategies related to IT in the enterprise.
  11. Knowledge of methods to monitor effectiveness of mitigation strategies and/or controls.
  12. Knowledge of stakeholder analysis and communication techniques.
  13. Knowledge of methods to establish key risk indicators (KRIs).
  14. Knowledge of methods to manage and report the status of identified risk.
24%
Benefits Realization

- Ensure that IT-enabled investments are managed to deliver optimized business benefits and that benefit realization outcome and performance measures are established, evaluated and progress is reported to key stakeholders.

Task Statements

  1. Ensure that IT-enabled investments are managed as a portfolio of investments.
  2. Ensure that IT-enabled investments are managed through their economic life cycle to achieve business benefit.
  3. Ensure business ownership and accountability for IT-enabled investments are established.
  4. Ensure that IT investment management practices align with enterprise investment management practices.
  5. Ensure that IT-enabled investment portfolios, IT processes and IT services are evaluated and benchmarked to achieve business benefit.
  6. Ensure that outcome and performance measures are established and evaluated to assess progress towards the achievement of enterprise and IT objectives.
  7. Ensure that outcome and performance measures are monitored and reported to key stakeholders in a timely manner.
  8. Ensure that improvement initiatives are identified, prioritized, initiated and managed based on outcome and performance measures.

Knowledge Statements

  1. Knowledge of IT investment management processes, including the economic life cycle of investments.
  2. Knowledge of basic principles of portfolio management.
  3. Knowledge of benefit calculation techniques (for example, earned value, total cost of ownership, return on investment).
  4. Knowledge of process and service measurement techniques (for example, maturity models, benchmarking, key performance indicators [KPIs]).
  5. Knowledge of processes and practices for planning, development, transition, delivery, and support of IT solutions and services.
  6. Knowledge of continuous improvement concepts and principles.
  7. Knowledge of outcome and performance measurement techniques (for example, service metrics, key performance indicators [KPIs]).
  8. Knowledge of procedures to manage and report the status of IT investments.
  9. Knowledge of cost optimization strategies (for example, outsourcing, adoption of new technologies).
  10. Knowledge of models and methods to establish accountability over IT investments.
  11. Knowledge of value delivery frameworks (for example, Val IT).
  12. Knowledge of business case development and evaluation techniques.
16%
Resource Optimization

- Ensure the optimization of IT resources including information, services, infrastructure and applications, and people, to support the achievement of enterprise objectives.

Task Statements

  1. Ensure that processes are in place to identify, acquire and maintain IT resources and capabilities (i.e., information, services, infrastructure and applications, and people).
  2. Evaluate, direct and monitor sourcing strategies to ensure existing resources are taken into account to optimize IT resource utilization.
  3. Ensure the integration of IT resource management into the enterprise’s strategic and tactical planning.
  4. Ensure the alignment of IT resource management processes with the enterprise’s resource management processes.
  5. Ensure that a resource gap analysis process is in place so that IT is able to meet strategic objectives of the enterprise.
  6. Ensure that policies exist to guide IT resource sourcing strategies that include service level agreements (SLAs) and changes to sourcing strategies.
  7. Ensure that policies and processes are in place for the assessment, training and development of staff to address enterprise requirements and personal/professional growth.

Knowledge Statements

  1. Knowledge of IT resource planning methods.
  2. Knowledge of human resource procurement, assessment, training, and development methodologies.
  3. Knowledge of processes for acquiring application, information, and infrastructure resources.
  4. Knowledge of outsourcing and offshoring approaches that may be employed to meet the investment program and operation level agreements (OLAs) and service level agreements (SLAs).
  5. Knowledge of methods used to record and monitor IT resource utilization and availability.
  6. Knowledge of methods used to evaluate and report on IT resource performance.
  7. Knowledge of interoperability, standardization and economies of scale.
  8. Knowledge of data management and data governance concepts.
  9. Knowledge of service level management concepts.
15%

 

ISACA CGEIT Dumps - Secret To Pass in First Attempt: https://www.exam-killer.com/CGEIT-valid-questions.html

CGEIT Practice Test Questions Updated 409 Questions: https://drive.google.com/open?id=1a1is7s4k0pZfY-tG7crI7UQf2N5kFQBs