nerdexam
Isaca

CGEIT · Question #260

Which of the following steps are performed in the Planning phase of IT Assurance methodology? Each correct answer represents a complete solution. Choose all that apply.

The correct answer is A. Plan the risk-based assurance initiatives. C. Perform a quick risk assessment. D. Assess process maturity.. The Planning phase of IT Assurance methodology involves defining risk-based initiatives, conducting a quick risk assessment, and assessing process maturity to inform the scope and approach of assurance activities.

Submitted by eva_at· Apr 18, 2026Governance of Enterprise IT

Question

Which of the following steps are performed in the Planning phase of IT Assurance methodology? Each correct answer represents a complete solution. Choose all that apply.

Options

  • APlan the risk-based assurance initiatives.
  • BScope and plan assurance initiatives.
  • CPerform a quick risk assessment.
  • DAssess process maturity.

How the community answered

(34 responses)
  • A
    94% (32)
  • B
    6% (2)

Why each option

The Planning phase of IT Assurance methodology involves defining risk-based initiatives, conducting a quick risk assessment, and assessing process maturity to inform the scope and approach of assurance activities.

APlan the risk-based assurance initiatives.Correct

Planning risk-based assurance initiatives involves identifying key risks and determining the assurance activities needed to address them, which is a core part of the planning phase.

BScope and plan assurance initiatives.

'Scope and plan assurance initiatives' represents the overarching objective of the planning phase itself rather than a discrete, actionable step performed within it, whereas options A, C, and D describe specific activities that comprise this broader objective.

CPerform a quick risk assessment.Correct

Performing a quick risk assessment helps to identify high-level risks and areas of concern early in the planning process, guiding where assurance efforts should be focused.

DAssess process maturity.Correct

Assessing process maturity helps determine the current state of IT processes and controls, informing the scope and depth of the assurance work required to identify potential weaknesses or gaps.

Concept tested: IT assurance planning phase activities

Source: https://www.isaca.org/credentialing/cisa/cisa-exam-content-outline

Topics

#IT Assurance Methodology#Assurance Planning#Risk Assessment#Process Maturity Assessment

Community Discussion

No community discussion yet for this question.

Full CGEIT Practice