nerdexam
IsacaIsaca

CGEIT · Question #140

CGEIT Question #140: Real Exam Question with Answer & Explanation

The correct answer is B: developing policies on social media. To mitigate reputational risks from employees' social media use, the enterprise should primarily establish clear guidelines and expectations through comprehensive social media policies.

Submitted by hans_de· Apr 18, 2026Governance of Enterprise IT

Question

To reduce the risk of reputational damage through inappropriate use of social media by employees outside of the workplace, the enterprise approach regarding social media should PRIMARILY focus on;

Options

  • Aimplementing preventative controls
  • Bdeveloping policies on social media
  • Cimplementing a review of processes utilizing social media.
  • Densuring each use of social media is approved by management.

Explanation

To mitigate reputational risks from employees' social media use, the enterprise should primarily establish clear guidelines and expectations through comprehensive social media policies.

Common mistakes.

  • A. Implementing preventative controls is a technical measure that may help, but it does not address the behavioral aspect or define what constitutes inappropriate use in the first place.
  • C. Implementing a review of processes utilizing social media is a reactive or monitoring control that occurs after policies have been defined and behavior has occurred, rather than being the primary preventative step.
  • D. Ensuring each use of social media is approved by management is an impractical and overly burdensome approach that would hinder productivity and is not scalable for individual employee social media activity.

Concept tested. Social media policy development for risk mitigation

Topics

#Social Media Policy#Reputational Risk#Employee Conduct#IT Governance

Community Discussion

No community discussion yet for this question.

Full CGEIT PracticeBrowse All CGEIT Questions