Free CGEIT Exam Braindumps (page: 52)

Page 51 of 119

The risk committee is overwhelmed by the number of false positives included in risk reports. What action would BEST address this situation?

  1. Evaluate key risk indicators.
  2. Adjust IT balanced scorecard.
  3. Conduct a risk assessment.
  4. Change the reporting format.

Answer(s): C



An enterprise has recently experienced an excessive number of exceptions due to outdated control frameworks. What should the leadership team do FIRST?

  1. Mandate a reassessment of the current control frameworks.
  2. Review the IT control standards.
  3. Mandate strict adherence to control frameworks.
  4. Update the exception review and approval process.

Answer(s): B



In an effort to reduce operation costs, an enterprise is switching from all internally-hosted applications to a mixture of internally- and externally-hosted applications. Of the following, the risk appetite for this decision would BEST be defined by the:

  1. vendor oversight committee.
  2. board of directors.
  3. chief information security officer.
  4. chief information officer.

Answer(s): C



IT senior management has just received a survey report indicating that more than one third of the organization’s key IT staff plan to retire within the next 12 months. Which of the following is the MOST important governance action to prepare for this possibility?

  1. Request the development of a succession plan.
  2. Engage HR for recruitment of new staff.
  3. Evaluate lower-level staff as succession candidates.
  4. Review motivation drivers for key IT staff.

Answer(s): C






Post your Comments and Discuss ISACA CGEIT exam with other Community members:

CGEIT Discussions & Posts