A regulatory audit of an IT department has identified discrepancies between processes described in the procedures and what is actually done by system administrators.
The discrepancies were caused by recent IT application changes. Which of the following would be the BEST way to prevent the recurrence of similar findings in the future?
When determining the desired maturity levels for IT governance processes, it is MOST important to:
Which of the following would be MOST useful in developing IT strategic plans aligned with technological needs?
A newly established IT steering committee is concerned whether a system is meeting availability objectives. Which of the following will provide the BEST information to make an assessment?
Which of the following should be considered FIRST when assessing the implications of new external regulations on IT compliance?
When an enterprise outsources to a third-party data center, who is accountable for the governance of data retention controls for the data that has been transferred?
An organization requires updates to their IT infrastructure to meet business needs. Which of the following will provide the MOST useful information when planning for the necessary IT investments?
Which of the following is the MOST important consideration regarding IT measures as part of an IT strategic plan?
IT governance within an enterprise is attempting to drive a cultural shift to enhance compliance with IT security policies. The BEST way to support this objective is to ensure that enterprise IT policies are:
A large enterprise is implementing an information security policy exception process. The BEST way to ensure that security risk is properly addressed is to:
confirm process owners' acceptance of residual risk.
perform an internal and external network penetration test.
obtain IT security approval on security policy exceptions.
Which of the following BEST supports an IT strategy committee’s objective to align employee competencies with planned initiatives?
Which of the following would BEST help to prevent an IT system from becoming obsolete before its planned return on investment (ROI)?
Which of the following would be an IT steering committee's BEST course of action upon learning business units have been independently procuring cloud services?
Which of the following is the BEST way for a CIO to ensure that the work of IT employees is aligned with approved IT directives?
What is the BEST way for IT to achieve compliance with regulatory requirements?