Free CGEIT Exam Braindumps (page: 37)

Page 36 of 119

Which of the following should be the PRIMARY goal of implementing service level agreements (SLAs) with an outsourcing vendor?

  1. Establishing penalties for not meeting service levels
  2. Complying with regulatory requirements
  3. Achieving operational objectives
  4. Gaining a competitive advantage

Answer(s): C



Of the following, the BEST response to the absence of a data security breach notification by a service provider is to contractually require that:

  1. security incidents identified by the provider be reported.
  2. security related key performance indicators be included in all service level agreements.
  3. security incident information be shared only on a need-to-know basis.
  4. a registry of all security breaches be maintained by the service provider.

Answer(s): A



Which of the following should be the MOST essential consideration when outsourcing IT services?

  1. Alignment with existing HR policies and practices
  2. Adoption of a diverse vendor selection process
  3. Identification of core and non-core business processes
  4. Compliance with enterprise architecture

Answer(s): C



A multinational enterprise is planning to migrate to cloud-based systems. Which of the following should be of MOST concern to the risk management committee?

  1. Resource alignment
  2. Security breaches
  3. Regulatory compliance
  4. Cost considerations

Answer(s): C






Post your Comments and Discuss ISACA CGEIT exam with other Community members:

CGEIT Discussions & Posts