Certified Information Systems Auditor (CISA) | Domain 2 IT Governance and Strategy 01
Problem 1 ・ Question 1 / 9
Who is ultimately accountable for IT governance?
View explanation
The board oversees that IT supports the enterprise's objectives and that risk and resources are managed properly.
Problem 1 ・ Question 2 / 9
Which best describes the relationship between IT governance and IT management?
View explanation
Governance sets direction and oversees; management carries the work out in line with that direction.
Problem 1 ・ Question 3 / 9
Which best shows that IT strategy is aligned with business strategy?
View explanation
Alignment is shown by IT initiatives supporting the enterprise's objectives, values and priorities directly.
Problem 1 ・ Question 4 / 9
What is the most important role of an IT strategy committee?
View explanation
The strategy committee oversees IT investment, risk and priorities from a management perspective.
Problem 1 ・ Question 5 / 9
What is the main benefit of maintaining an enterprise architecture?
View explanation
An EA makes the current and target structures visible and supports reducing duplication and moving strategically.
Problem 1 ・ Question 6 / 9
Who should approve the enterprise's risk appetite?
View explanation
The amount of risk the enterprise will accept in pursuit of its objectives is approved by the governing body.
Problem 1 ・ Question 7 / 9
Which correctly describes the relationship between policies, standards and procedures?
View explanation
The usual hierarchy takes a higher-level policy down into concrete standards and procedures for carrying it out.
Problem 1 ・ Question 8 / 9
Which is the best indicator of the effectiveness of IT governance?
View explanation
Governance is evaluated by whether the value expected from IT has been realised in line with enterprise objectives.
Problem 1 ・ Question 9 / 9
What is the main purpose of a KRI?
View explanation
A KRI is an indicator that shows changes in risk exposure and prompts early action.
Result
More sets in this exam
- Certified Information Systems Auditor (CISA) | IS Audit Fundamentals
- Certified Information Systems Auditor (CISA) | Domain 1 Audit Planning and Risk Assessment 01
- Certified Information Systems Auditor (CISA) | Domain 1 Audit Execution and Reporting 02
- Certified Information Systems Auditor (CISA) | Domain 3 Acquisition and Development Governance 01
- Certified Information Systems Auditor (CISA) | Domain 3 Testing, Conversion and Implementation 02
- Certified Information Systems Auditor (CISA) | Domain 4 IT Operations and Service Management 01