
Pass Your Isaca Certificaton CGEIT Exam on Feb 19, 2022 with 409 Questions
CGEIT Free Exam Study Guide! (Updated 409 Questions)
ISACA CGEIT Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
NEW QUESTION 196
A large financial institution is considering outsourcing customer call center operations which will allow the chosen vendor to access systems from offshore locations. Which of the following represents the GREATEST risk?
- A. Inconsistent customer service and reporting
- B. Inadequate business continuity planning
- C. Lack of network availability
- D. Loss of data confidentiality
Answer: D
NEW QUESTION 197
Risk management strategies are PRIMARILY adopted to:
- A. take necessary precautions for claims and losses.
- B. achieve compliance with legal requirements.
- C. achieve acceptable residual risk levels.
- D. avoid risks for business and IT assets.
Answer: C
NEW QUESTION 198
An enterprise incurred penalties for noncompliance with privacy regulations. Which of the following is MOST important to ensure appropriate ownership of access controls to address this deficiency?
- A. Granting access to information based on information architecture
- B. Implementing multi-factor authentication controls
- C. Engaging an audit of logical access controls and related security policies
- D. Authenticating access to information assets based on roles or business rules.
Answer: D
NEW QUESTION 199
You are the business analyst for your organization and are preparing to conduct stakeholder analysis. As part of this process you realize that you'll need several inputs.
Which one of the following is NOT an input you'll use for the conduct stakeholder analysis task?
- A. Business need
- B. Enterprise environmental factors
- C. Organizational process assets
- D. Enterprise architecture
Answer: B
NEW QUESTION 200
Which of the following problems occur with performance measurement systems that limit their usefulness?
Each correct answer represents a complete solution. Choose all that apply.
- A. It is dependent on the timely occurrence of corrective action which is required for effective management control.
- B. It is dependent on gross aggregates, which tend to understate or ignore distributional contributions and consequences.
- C. It is dependent on summary data, which emphasizes averages and discounts outliers.
- D. It is dependent on historical patterns and reluctant to accept new structural changes that are capable of generating different outcomes
Answer: B,C,D
NEW QUESTION 201
Which of the following functions of HR department is liable for attitude surveys, labor relation, employee handbook, and labor law compliance?
- A. Compensation and benefit
- B. Personnel policy
- C. Employee relation
- D. Analysis and design for work
Answer: C
NEW QUESTION 202
Which of the following are the main benefits of using Information Services Procurement Library (ISPL)? Each correct answer represents a complete solution. Choose all that apply.
- A. The customer can take advantage of the competitive market.
- B. The use of a strategy that really fits the situation.
- C. The contract can be used as a control instrument.
- D. The proposals of consumers become comparable.
Answer: A,B,C
Explanation:
Section: Volume B
NEW QUESTION 203
Which of the following activity loops describes creation of new processes?
- A. Loop 3
- B. Loop 2
- C. Loop 4
- D. Loop 1
Answer: A
NEW QUESTION 204
Stephen is the project manager of the GBB project. He has worked with two subject matter experts and his project team to complete the risk assessment technique. There are approximately 47 risks that have a low probability and a low impact on the project.
Which of the following answers best describes what Stephen should do with these risk events?
- A. The low probability and low impact risks should be added to a watch list for future monitoring.
- B. Because they are low probability and low impact, Stephen should accept the risks.
- C. Because they are low probability and low impact, the risks can be dismissed.
- D. The low probability and low impact risks should be added to the risk register.
Answer: A
NEW QUESTION 205
You are the project manager of the NHQ project for your company. You are working with your project team to complete a risk audit. A recent issue that your project team responded to, and management approved, was to increase the project schedule because there was risk surrounding the installation time of a new material. Your logic was that with the expanded schedule there would be time to complete the installation without affecting downstream project activities. What type of risk response is being audited in this scenario?
- A. Lag Time
- B. Avoidance
- C. Parkinson's Law
- D. Mitigation
Answer: B
NEW QUESTION 206
Which of the following should be the PRIMARY basis for establishing categories within an information classification scheme?
- A. Business impact
- B. Information security policy
- C. Industry standards
- D. Information architecture
Answer: A
NEW QUESTION 207
Which of the following processes involves choosing the alternative strategies, executing a contingency or fallback plan, taking corrective action, and modifying the project management plan?
- A. Scope Change control
- B. Monitor and Control risk
- C. Integrated Change control
- D. Configuration Management
Answer: B
NEW QUESTION 208
Amy is the project manager for her company. In her current project the organization has a very low tolerance for risk events that will affect the project schedule. Management has asked Amy to consider the affect of all the risks on the project schedule. What approach can Amy take to create a bias against risks that will affect the schedule of the project?
- A. She can filter all risks based on their affect on schedule versus other project objectives.
- B. She can create an overall project rating scheme to reflect the bias towards risks that affect the project schedule.
- C. She can shift risk-laden activities that affect the project schedule from the critical path as much a possible.
- D. She can have the project team pad their time estimates to alleviate delays in the project schedule
Answer: B
NEW QUESTION 209
Which of the following ISO standards defines the corporate governance of IT?
- A. ISO 38500
- B. ISO 9000
- C. ISO 20000
- D. ISO 27001
Answer: A
NEW QUESTION 210
Which of the following is a practice of forecasting possible risks to the organization and taking steps to mitigate their impact on operations?
- A. HR audit
- B. Timekeeping
- C. Enterprise risk management
- D. Applicant tracking systems
Answer: C
Explanation:
Section: Volume C
NEW QUESTION 211
The board of directors has mandated the use of geolocation software to track mobile assets assigned to employees who travel outside of their home country. To comply with this mandate, the IT steering committee should FIRST request
- A. an assessment to determine if data privacy protection is addressed.
- B. the inclusion of mandatory training for remote device users.
- C. an update to the acceptable use policy.
- D. an architectural review to determine appropriate solution design.
Answer: A
NEW QUESTION 212
......
CGEIT Dumps for Isaca Certificaton Certified Exam Questions and Answer: https://examcollection.guidetorrent.com/CGEIT-dumps-questions.html