Domain 2: Task 1 Flashcards

1
Q
  • An IS auditor must be able to understand and provide assurance that the organization has:
A

a. Structure
b. Accountability Mechanisms
c. Monitoring Practices
d. Policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q
  • For an IS auditor, the knowledge of IT governance forms the foundation for:
A

a. Evaluating Control Practices

b. Mechanisms for Management Oversight and Review

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q
  • A goal of GEIT implementation is to provide a system in which all ____ and ____ provide input into the decision-making process.
A

a. stakeholders

b. departments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q
  • GEIT seeks to ensure that IT performance meets enterprise objectives by:
A

a. alignment of objectives

b. realization of benefits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q
  • The GEIT framework provides feedback regarding:
A

a. How IT delivers value to the enterprise

b. How IT risk is properly managed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
  • The processes of GEIT implementation must include:
A

a. IT Resource Management
b. Performance Measurement
c. Compliance Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Summarize the objective of IT Resource Management.

A

a. focuses on maintaining updated inventory of IT resources, and
b. addresses risk management process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Summarize the objective of Performance Measurement.

A

a. ensures that all IT resources perform to deliver value to the enterprise.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Summarize the areas of compliance requirements that Compliance Management addresses.

A

a. legal,
b. regulatory, and
c. contractual.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

To help business succeed, IT becomes an integral part of ____, not just merely ______

A

a. an enterprise’s strategy

b. an enabler.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

To help business succeed, strategic alignment between ____ and ____ becomes a ____, leading to the achievement of ____.

A

a. IT
b. enterprise objectives
c. critical success factor
d. business value

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

The focus areas of Executive Management supporting Value Creation:

A

a. Benefits Realization,
b. Risk Optimization, and
c. Resource Optimization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

GEIT helps the enterprise through:

A

a. incorporating and normalizing best practices. (Integrating)
b. enabling full leverage of information (Facilitating)
c. helping to form the relationships and processes used to direct and control the enterprise toward its goals, balanced with risk. (Structuring)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Examples of GEIT frameworks are:

A

a. COBIT 5
b. ISO/IEC 27001 Series
c. ITIL
d. IT Baseline Protection Catalogs
e. Information Security Management Maturity Model (ISM3)
f. ISO/IEC 38500:2008
g. ISO/IEC 20000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

The Audit function helps the enterprise by

A

a. providing recommendations to senior management.
b. providing independent and balance reviews
c. ensuring compliance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
  • For GEIT, the Terms of Reference must address:
A

a. Scope of Work
b. Reporting Lines
c. Right of Access to information.

17
Q

Measures of GEIT for assessment are:

A

a. Enterprise Governance and GEIT alignment,
b. IT alignment with organizational mission, vision, values, objectives, and strategies;
c. achievement of performance objectives;
d. legal, environmental, information quality, fiduciary, security, and privacy requirements.
e. inherent risk in the IS environment
f. IT investment/expenditure.

18
Q

Enterprise Architecture addresses the perspectives of :

A

a. the technology

b. the business

19
Q

The reference models of the Federal Enterprise Architecture include:

A

a. Performance
b. Business
c. Service component
d. Technical
e. Data