nerdexam
IsacaIsaca

CGEIT · Question #241

CGEIT Question #241: Real Exam Question with Answer & Explanation

The correct answer is D: Mandate the creation of a data governance framework.. To ensure all business units consistently work towards remediating data protection and least privilege issues through data encryption, the best approach is to establish a foundational data governance framework. This framework provides the overarching structure, policies, and resp

Submitted by andres_qro· Apr 18, 2026Governance of Enterprise IT

Question

An enterprise experiencing issues with data protection and least privilege is implementing enterprise-wide data encryption in response Which of the following is the BEST approach to ensure all business units work toward remediating these issues?

Options

  • ADevelop key performance indicators (KPIs) to measure enterprise adoption.
  • BIntegrate data encryption requirements into existing and planned projects.
  • CAssign owners for data governance initiatives.
  • DMandate the creation of a data governance framework.

Explanation

To ensure all business units consistently work towards remediating data protection and least privilege issues through data encryption, the best approach is to establish a foundational data governance framework. This framework provides the overarching structure, policies, and responsibilities for managing data protection across the enterprise.

Common mistakes.

  • A. Developing KPIs measures adoption but doesn't provide the initial structure or mandate for how all business units should operate.
  • B. Integrating requirements into projects is a tactical step within an existing framework, not the best approach to ensure all units work towards remediation initially.
  • C. Assigning owners is a component of a data governance framework, but doesn't establish the comprehensive structure itself for enterprise-wide alignment.

Concept tested. Data Governance Framework Implementation

Topics

#Data Governance#IT Governance Framework#Enterprise Alignment#Data Protection

Community Discussion

No community discussion yet for this question.

Full CGEIT PracticeBrowse All CGEIT Questions