FreeQAs
 Request Exam  Contact
  • Home
  • View All Exams
  • New QA's
  • Upload
PRACTICE EXAMS:
  • Oracle
  • Fortinet
  • Juniper
  • Microsoft
  • Cisco
  • Citrix
  • CompTIA
  • VMware
  • SAP
  • EMC
  • PMI
  • HP
  • Salesforce
  • Other
  • Oracle
    Oracle
  • Fortinet
    Fortinet
  • Juniper
    Juniper
  • Microsoft
    Microsoft
  • Cisco
    Cisco
  • Citrix
    Citrix
  • CompTIA
    CompTIA
  • VMware
    VMware
  • SAP
    SAP
  • EMC
    EMC
  • PMI
    PMI
  • HP
    HP
  • Salesforce
    Salesforce
  1. Home
  2. ISACA Certification
  3. CGEIT Exam
  4. ISACA.CGEIT.v2024-05-21.q447 Dumps
  • ««
  • «
  • …
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • …
  • »
  • »»
Download Now

Question 421

During an IT strategy review, a new CIO determined that numerous important internal processes have not been updated for several years and should be reexamined. Which of the following would be the BEST approach to address this concern?

Correct Answer: B
insert code

Question 422

An enterprise has decided to implement an IT risk management program After establishing stakeholder desired outcomes, the MAIN goal of the IT strategy committee should be to:

Correct Answer: D
The main goal of the IT strategy committee after establishing stakeholder desired outcomes should be to ensure IT risk alignment with enterprise risk. IT risk alignment means that the IT risk management program is consistent and integrated with the enterprise risk management (ERM) program, and that the IT risks are identified, assessed, and treated in relation to the enterprise's objectives, strategies, and risk appetite. IT risk alignment can help the enterprise achieve the following benefits1:
* Enhance the value delivery of IT to the business
* Improve the decision making and prioritization of IT investments and initiatives
* Reduce the likelihood and impact of IT-related incidents and losses
* Increase the resilience and agility of IT in responding to changes and disruptions
* Strengthen the governance and accountability of IT performance and compliance To ensure IT risk alignment with enterprise risk, the IT strategy committee should perform the following tasks2:
* Define the scope, objectives, and criteria for IT risk management
* Establish the roles and responsibilities for IT risk management
* Align the IT risk management framework and processes with the ERM framework and processes
* Communicate and collaborate with the ERM function and other stakeholders on IT risk issues
* Monitor and review the effectiveness and maturity of IT risk management The other options are not the main goal of the IT strategy committee after establishing stakeholder desired outcomes. Identifying business data that requires protection, performing a risk analysis on key IT processes, and implementing controls to address high risk areas are steps that are part of the IT risk management process, but they are not specific to ensuring IT risk alignment with enterprise risk. These steps should be done by the IT risk management function or team, under the guidance and oversight of the IT strategy committee.
insert code

Question 423

An independent consultant has been hired to conduct an ad hoc audit of an enterprise's information security office with results reported to the IT governance committee and the board Which of the following is MOST important to provide to the consultant before the audit begins?

Correct Answer: B
The scope and stakeholders of the audit are the most important information to provide to the consultant before the audit begins, because they define the objectives, boundaries, and expectations of the audit. The scope and stakeholders of the audit are also part of the IT governance domain 1: Framework for the Governance of Enterprise IT1. References := 1: CGEIT Review Manual 2023, ISACA, page 23.
insert code

Question 424

Which of the following is (he GREATEST benefit of using the life cycle approach to govern information assets?

Correct Answer: A
Using the life cycle approach to govern information assets is the greatest benefit for an organization, because it helps to optimize the overall costs associated with the creation, storage, processing, distribution, and disposition of information. The life cycle approach involves managing information according to its value, utility, and risk throughout its lifespan1. By using the life cycle approach, an organization can ensure that it only collects, creates, and retains the information that is relevant, accurate, and useful for its business objectives and processes2. It can also ensure that it stores, protects, and disposes of the information in a cost-effective and secure manner, complying with the legal and regulatory requirements2. The life cycle approach also helps to improve the performance, availability, and accessibility of the information, as well as its quality and integrity3. By using the life cycle approach, an organization can reduce the operational costs, storage costs, compliance costs, and risk exposure costs associated with its information assets4. Therefore, using the life cycle approach to govern information assets is the greatest benefit for an organization.
References := What is Information Lifecycle Management (ILM)?, Information Lifecycle Management: A Comprehensive Guide, Information Lifecycle Management (ILM) - Gartner IT Glossary, The Comprehensive Guide to Information Lifecycle Management.
insert code

Question 425

An IT governance committee realizes there are antiquated technologies in use throughout the enterprise.
Which of the following is the BEST group to evaluate the recommendations to address these shortcomings?

Correct Answer: A
The best group to evaluate recommendations to address the use of antiquated technologies throughout the enterprise is the Enterprise Architecture (EA) review board. This group is responsible for overseeing the architectural framework and ensuring that IT systems and technologies align with the enterprise's strategic objectives. The EA review board has the expertise to assess the impact of current technologies on the business and recommend modernization strategies that align with the enterprise architecture. While business process improvement workgroups, audit committees, and risk management committees play important roles, the EA review board is specifically equipped to address technological shortcomings and alignment with business goals.
insert code
  • ««
  • «
  • …
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • …
  • »
  • »»
[×]

Download PDF File

Enter your email address to download ISACA.CGEIT.v2024-05-21.q447 Dumps

Email:

FreeQAs

Our website provides the Largest and the most Latest vendors Certification Exam materials around the world.

Using dumps we provide to Pass the Exam, we has the Valid Dumps with passing guranteed just which you need.

  • DMCA
  • About
  • Contact Us
  • Privacy Policy
  • Terms & Conditions
©2026 FreeQAs

www.freeqas.com materials do not contain actual questions and answers from Cisco's certification exams.