CGEIT Exam Questions
695 real CGEIT exam questions with expert-verified answers and explanations. Page 1 of 14.
- Question #1Governance of Enterprise IT
An enterprise has established a new department to oversee the life cycle of activities that support data management objectives. Which of the following should be done NEXT?
Organizational DesignRoles and ResponsibilitiesData GovernanceIT Governance Frameworks - Question #2Governance of Enterprise IT
Which of the following is the MOST important attribute of an information steward?
Information StewardshipData GovernanceBusiness-IT AlignmentIT Governance Roles - Question #3Governance of Enterprise IT
From a governance perspective, which of the following roles is MOST important for an enterprise to keep in-house?
Information GovernanceData StewardshipRoles and ResponsibilitiesOrganizational Sourcing - Question #4Risk Optimization
An enterprise learns that a new privacy regulation was recently published to protect customers in the event of a breach involving personally identifiable information (Pll). The IT...
Risk Management ProcessRegulatory ComplianceRisk IdentificationIT Risk - Question #5Governance of Enterprise IT
An enterprise has decided to utilize a cloud vendor for the first time to provide email as a service, eliminating in-house email capabilities. Which of the following IT strategic a...
Cloud adoptionIT GovernancePolicy managementStrategic actions - Question #6Governance of Enterprise IT
Which of the following components of a policy BEST enables the governance of enterprise IT?
IT governancePolicy componentsRoles and responsibilitiesAccountability - Question #7Governance of Enterprise IT
Which of the following is PRIMARILY achieved through performance measurement?
Performance MeasurementTransparencyIT GovernanceMonitoring and Reporting - Question #8Risk Optimization
A large retail chain realizes that while there has not been any loss of da a, IT security has not been a priority and should become a key goal for the enterprise. What should be th...
IT Security StrategyRisk AssessmentInformation Asset ProtectionStrategic Initiative - Question #9Risk Optimization
Risk management strategies are PRIMARILY adopted to:
Risk management objectivesResidual riskRisk strategies - Question #10Governance of Enterprise IT
An enterprise made a significant change to its business operating model that resulted in a new strategic direction. Which of the following should be reviewed FIRST to ensure IT con...
Strategic AlignmentIT Investment PortfolioIT GovernanceBusiness Transformation - Question #11Risk Optimization
A chief technology officer (CTO) wants to ensure IT governance practices adequately address risk management specific to mobile applications. To create the appropriate risk policies...
Risk ManagementRisk ToleranceIT GovernancePolicy Development - Question #12Risk Optimization
A large financial institution is considering outsourcing customer call center operations which will allow the chosen vendor to access systems from offshore locations. Which of the...
Outsourcing riskData confidentialityOffshore vendor managementInformation security risk - Question #13Risk Optimization
An IT director is negotiating a contract with a vendor for application management services. There is concern by other departments that the outsourced services may not be delivered...
Vendor ManagementOutsourcingService DeliveryRisk Mitigation - Question #14Governance of Enterprise IT
Which of the following is the BEST IT architecture concept to ensure consistency, interoperability, and agility for infrastructure capabilities?
Reference ArchitectureIT Architecture GovernanceInteroperabilityIT Standards - Question #15Risk Optimization
A company is considering selling products online, and the CIO has been asked to advise the board of directors of potential problems with this strategy. Which of the following is th...
Risk AssessmentCIO ResponsibilitiesStrategic AdvisoryBusiness Strategy - Question #16Governance of Enterprise IT
In a large enterprise, which of The following is the MOST effective way to understand the business activities associated with the enterprise s information architecture?
Business Process MappingInformation ArchitectureEnterprise ArchitectureBusiness-IT Alignment - Question #17Risk Optimization
A board of directors is concerned that a major IT implementation has the potential to significantly disrupt enterprise operations. Which of the following would be MOST helpful in i...
Risk AssessmentIT Risk ManagementImpact AnalysisEnterprise Risk - Question #18Governance of Enterprise IT
Which of the following is the MOST comprehensive method to report on overall IT performance to the board of directors?
IT performance reportingBalanced ScorecardStrategic reportingBoard reporting - Question #19Governance of Enterprise IT
A CIO has been asked to modify an organization's IT performance measurement system to reflect recent changes in technology, including the movement of some data processing to a clou...
IT performance measurementStakeholder needs analysisIT governance principlesPerformance management design - Question #20Risk Optimization
Which of the following MOST effectively demonstrates operational readiness to address information security risk issues?
information security riskoperational readinessrisk proceduresrisk mitigation - Question #21Governance of Enterprise IT
An enterprise's CIO requires all IT processes within the enterprise to be clearly defined. Which of the following would be the MOST immediate outcome?
Process definitionIT processesProcess managementRepeatability - Question #22Governance of Enterprise IT
Best practice states that IT governance MUST:
IT governanceEnterprise governanceGovernance integrationBest practices - Question #23Governance of Enterprise IT
The MOST important aspect of an IT governance framework to ensure that IT supports repeatable business processes is:
IT Governance FrameworkQuality ManagementRepeatable Business ProcessesIT Support - Question #24Governance of Enterprise IT
A new CIO has been charged with updating the IT governance structure. Which of the following is the MOST important consideration to effectively influence organizational and process...
IT GovernanceOrganizational Change ManagementStakeholder EngagementChange Leadership - Question #25Governance of Enterprise IT
Which of the following is the PRIMARY ongoing responsibility of the IT governance function related to risk?
IT GovernanceRisk ManagementRisk AppetiteBusiness Alignment - Question #26Governance of Enterprise IT
An enterprise considering implementing IT governance should FIRST develop the scope of the IT governance program and:
IT Governance ImplementationProgram InitiationStakeholder EngagementConsensus Building - Question #27Governance of Enterprise IT
Which of the following should be the MAIN reason for an enterprise to implement an IT risk management framework?
IT Risk Management FrameworkExecutive Decision SupportStrategic IT RiskIT Governance - Question #28Governance of Enterprise IT
An enterprise's information security function is making changes to its data retention and backup policies. Which of the following presents the GREATEST risk?
Data retention policyBackup policyStakeholder consultationInformation security risk - Question #29Governance of Enterprise IT
Which of the following would be MOST important to update if a decision is made to ban end user- owned devices in the workplace?
Acceptable Use PolicyBYOD PolicyIT Policy ManagementInformation Security Governance - Question #30Governance of Enterprise IT
Which of the following is the MOST effective way to manage risks within the enterprise?
Risk ManagementAccountabilityGovernanceEnterprise Risk Management - Question #31Governance of Enterprise IT
Which of the following is an ADVANTAGE of using strategy mapping?
Strategy MappingStrategic ObjectivesCause-and-EffectStrategic Planning - Question #32Governance of Enterprise IT
Due to continually missed service level agreements (SLAs), an enterprise plans to terminate its contract with a vendor providing IT help desk services. The enterprise s IT departme...
Change ManagementIT GovernanceVendor ManagementService Transition - Question #33Governance of Enterprise IT
A manufacturing company has recently decided to outsource portions of its IT operations. Which of the following would BEST justify this decision?
IT OutsourcingStrategic AlignmentResource ScalabilityValue Delivery - Question #34Governance of Enterprise IT
A CIO believes that a recent mission-critical IT decision by the board of directors is not in the best financial interest of all stakeholders. Which of the following is the MOST et...
Ethical decision-makingCorporate governanceBoard-management communicationStakeholder interests - Question #35Benefits Realization
A retail enterprise has cost reduction as its top priority. From a governance perspective, which of the following should be the MOST important consideration when evaluating differe...
IT Investment EvaluationBusiness ValueBenefits RealizationGovernance of IT - Question #36Governance of Enterprise IT
Which of the following is the MOST important consideration for data classification to be successfully implemented?
Data ClassificationUser AdoptionInformation GovernanceImplementation Success - Question #37Governance of Enterprise IT
Which of the following BEST reflects the ethical values adopted by an IT organization?
Ethical valuesIT principlesIT policiesIT governance - Question #38Governance of Enterprise IT
Which of the following would provide the BEST input for prioritizing strategic IT improvement initiatives?
Strategic IT prioritizationBusiness case evaluationIT investment decisionsValue realization - Question #39Risk Optimization
What is the PRIMARY objective for performing an IT due diligence review prior to the acquisition of a competitor?
IT Due DiligenceMergers & Acquisitions (M&A)IT Risk AssessmentRisk Profile - Question #40Governance of Enterprise IT
The IT program manager does not see the value of conducting risk assessments for a new major IT project. The manager is reluctant to cooperate with internal auditors and the newly...
IT GovernanceChange ManagementSteering CommitteeProgram Management Best Practices - Question #41Risk Optimization
An enterprise is planning a change in business direction. As a result, IT risk will significantly increase. Which of the following should be the GO'S FIRST course of action?
Risk ManagementIT GovernanceRisk EscalationExecutive Reporting - Question #42Governance of Enterprise IT
Which of the following is MOST important to effectively initiate IT-enabled change?
IT-enabled changeTop management supportChange initiationStrategic alignment - Question #43Governance of Enterprise IT
Which of the following would BEST help to improve an enterprise's ability to manage large IT investment projects?
Project GovernanceIT Investment ManagementPhase-gate ReviewProject Control - Question #44Risk Optimization
A business case indicates an enterprise would reduce costs by implementing a bring your own device (BYOD) program allowing employees to use personal devices for email. Which of the...
BYODRisk AssessmentIT GovernanceProgram Initiation - Question #45Governance of Enterprise IT
The CIO of a financial services company is tasked with ensuring IT processes are in compliance with recently instituted regulatory changes. The FIRST course of action should be to:
Regulatory ComplianceIT GovernanceCurrent State AssessmentCompliance Frameworks - Question #46Risk Optimization
The CIO of an enterprise learns the payroll server of a competitor has been the victim of ransomware. To help plan for the possibility of ransomed corporate data, what should be th...
RansomwareRisk AssessmentRisk Management ProcessCIO Responsibilities - Question #47Risk Optimization
Which of the following aspects of the transition from X-rays to digital images would be BEST addressed by implementing information security policy and procedures?
Information securityData protectionPersonal health informationDigital transformation - Question #48Governance of Enterprise IT
Prior to decommissioning an IT system, it is MOST important to:
IT System DecommissioningData RetentionInformation GovernanceCompliance Management - Question #49Governance of Enterprise IT
A CEO determines the enterprise is lagging behind its competitors in consumer mobile offerings, and mandates an aggressive rollout of several new mobile services within the next 12...
IT Capability AssessmentStrategic AlignmentWorkforce PlanningResource Management - Question #50Governance of Enterprise IT
Which of the following is the MOST effective way for a CIO to govern business unit deployment of shadow IT applications in a cloud environment?
Shadow ITIT GovernanceRisk ManagementExecutive Education