New Year Sale - Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70dumps

COBIT-Design-and-Implementation Questions and Answers

Question # 6

What can management do to help ensure a planned IT initiative will meet future state objectives?

A.

Conduct stage gate reviews during implementation.

B.

Establish a return on investment (ROI)target.

C.

Monitor key risk indicators (KRIs).

D.

Define operational performance metrics.

Full Access
Question # 7

Which of the following stakeholders is responsible for creating or updating EGIT objectives following the completion of the first iteration of an EGIT program implementation life cycle?

A.

IT managers and IT process owners

B.

The CIO and business executives

C.

The risk and compliance function and IT audit

D.

The board of directors and the program steering committee

Full Access
Question # 8

The PRIMARY purpose of including assurance and compliance auditors during the planning phase of an IT implementation initiative is to:

A.

Validate completeness of the initiative.

B.

Ensure all risks have been considered.

C.

Obtain an independent perspective.

D.

Determine if requirements are achievable.

Full Access
Question # 9

Using the COBIT 2019 Governance System Design Workflow allows enterprises to:

A.

Implement a governance framework that is strictly aligned to industry standards.

B.

Realize a governance system that is tailored to their needs.

C.

Design a governance system that focuses primarily on compliance requirements.

D.

Ensure each of the stages and steps in the design process are closely adhered to.

Full Access
Question # 10

Ensuring the program team knows and understands the enterprise goals is a part of which of the following implementation phases?

A.

Where do we want to be?

B.

How do we get there?

C.

What are the drivers?

D.

Where are we now?

Full Access
Question # 11

Which of the following stakeholders ensures the business case and program plan are realistic and achievable?

A.

Business process owners

B.

Implementation team

C.

Chief information officer (CIO)

D.

IT process owners

Full Access
Question # 12

Which of the following is a success factor in management's ability to maintain momentum after the successful implementation of an EGIT program plan?

A.

Continuing to regularly communicate the need for good governance

B.

Delegating responsibility for EGIT to external resources

C.

Focusing resources on service delivery rather than process improvement

D.

Operating EGIT independently and outside the course of normal business practice

Full Access
Question # 13

Which of the following describes the difference between the Risk Profile design factor and the I&T-Related Issues design factor?

A.

IT risk scenarios describe potential events that could impact the organization in the future, whereas IT issues describe events or current situations affecting the organization.

B.

IT risk scenarios are more detailed and IT issues are more summarized and the organization can decide which one to use when designing its governance system

C.

IT issues describe potential events that could impact the organization in the future, whereas IT risk scenarios describe events or current situations affecting the organization.

D.

IT risk scenarios have been described in more detail the COBIT 2019 Design Guide that IT issues in order to cover a wide range of potential risk

Full Access
Question # 14

An enterprise is considering threat landscape as a design factor for its governance system. Which of the following would be a reason to classify the threat landscape as high?

A.

IT trends that could be used in favor of the enterprise

B.

Potential new competitors entering the market

C.

Service delivery problems by IT outsourcers

D.

Geopolitical situations affecting the enterprise

Full Access
Question # 15

Which of the following is the STRONGEST indicator that a major IT initiative in progress will fail?

A.

Inadequate management direction

B.

Inadequate business case documentation

C.

Inadequate identification of key risks

D.

Inadequate definition of key roles

Full Access
Question # 16

Which function within the IT corporate structure is responsible for classifying information using an agreed-upon classification scheme for a new data collection system?

A.

Information security

B.

Information privacy

C.

.IT governance

D.

Enterprise architecture

Full Access
Question # 17

What is the role of the board when establishing where the enterprise wants to be?

A.

Ensuring open and fair assessment of IT activities

B.

Providing expert advice and guidance where appropriate

C.

Setting priorities, time scales, and expectations

D.

Obtaining consensus on a required capability target

Full Access
Question # 18

Which of the following domains addresses the integration of I&T solutions with business processes?

A.

Monitor, Evaluate and Assess (MEA)

B.

Align, Plan and Organize (APO)

C.

Build, Acquire and Implement (BAI)

D.

Deliver, Service and Support (DSS)

Full Access
Question # 19

An assessment of the gaps in capability should result in a list of:

A.

Performance measures.

B.

Unmitigated residual risks.

C.

Implementation costs.

D.

Potential improvements.

Full Access
Question # 20

Which of the following would a COBIT implementation expert consider as a COBIT design factor in tailoring enterprise strategy?

A.

Cost leadership

B.

Risk optimization

C.

Business transformation

D.

Value delivery

Full Access
Question # 21

Which of the following is an important desired outcome to be achieved from the execution of an EGIT implementation program plan?

A.

Transition of EGIT projects into the enterprise’s normal development life cycle

B.

Development of a record of unapproved EGIT projects

C.

Completion of EGIT project implementation regardless of the amount of time required

D.

None of the above

Full Access
Question # 22

Which of the following is the MOST common risk response used in risk management?

A.

Risk avoidance

B.

Risk acceptance

C.

Risk mitigation

D.

Risk transfer

Full Access
Question # 23

Who is responsible for monitoring the achievement of the overall EGIT implementation program plan results, including the achievement of goals and realization of benefits?

A.

CIO

B.

IT managers

C.

Program steering committee

D.

IT process owners

Full Access
Question # 24

When tailoring a governance system using COBIT 2019 for a nonprofit enterprise seeking to improve IT service delivery, which of the following enterprise strategy design factors is MOST relevant?

A.

Cost

B.

Stability

C.

Growth

D.

Innovation

Full Access
Question # 25

Which of the following needs to be resolved when finalizing the initial governance design?

A.

Misaligned enterprise and IT goals

B.

Budgeted versus actual resources

C.

Objectives exceeding enterprise appetite

D.

Conflicting inputs and priorities

Full Access
Question # 26

What is the PRIMARY difference between an international enterprise with 200,000 employees (large) and a domestic one that has 200 employees (small) when completing a governance system design?

A.

Large enterprises have a higher risk profile with key risk indicators (KRIs).

B.

Fewer governance objectives are considered for a small enterprise.

C.

Small enterprises use a COBIT model and large enterprises use international standards.

D.

Large enterprises use a COBIT model and small enterprises use an SME focus area.

Full Access
Question # 27

Which of the following functions would be responsible for executing a contract that retains independent legal consultants to review the level of regulatory compliance of a proposed IT solution?

A.

I&T security

B.

Executive leadership team

C.

Legal office

D.

Procurement office

Full Access
Question # 28

Which of the following is a KEY consideration when finalizing a governance system design with competing priorities?

A.

The enterprise should defer final design decisions to executive management to minimize conflicts among business stakeholders.

B.

The enterprise should refer to the COBIT design workflow for universally applicable guidelines to resolve conflicting priorities.

C.

The enterprise should be prepared to deviate from previously identified priorities with justified reasons.

D.

The enterprise should ensure all steps in the proposed workflow are applied when focusing on a very specific issue or initiative.

Full Access
Question # 29

Who is responsible for determining whether a proposed IT governance solution is technically feasible and cost-effective?

A.

IT management

B.

Board of directors

C.

Finance office

D.

Business owners

Full Access
Question # 30

Which of the following situations is MOST likely the root cause for an enterprise lacking the required skills and competencies to execute an EGIT implementation program plan?

A.

Enterprise training does not include business and management skill development.

B.

Business staff are too often involved in IT processes that affect business processes and procedures.

C.

The enterprise relies too heavily on the use of COBIT as its EG IT framework.

D.

IT staff are too often focused on the achievement of business value.

Full Access
Question # 31

When considering the threat landscape design factor, and the design factor value is high, which of the following should be a management objective priority?

A.

Managed operations (DSS01)

B.

Managed service agreements (APO09)

C.

Managed assurance (MEA04)

D.

Managed innovation (APO04)

Full Access
Question # 32

Which of the following is an example of a specific focus area to which COBIT could be customized?

A.

Information items

B.

Cybersecurity

C.

Capability levels

D.

Enterprise goals

Full Access
Question # 33

Which of the following describes the difference between the Risk Profile design factor and the I&T-Related Issues design factor?

A.

IT risk scenarios describe potential events that could impact the organization in the future, whereas IT issues describe events or current situations affecting the organization.

B.

IT risk scenarios are more detailed and IT issues are more summarized, and the organization can decide which one to use when designing its governance system.

C.

IT issues describe potential events that could impact the organization in the future, whereas IT risk scenarios describe events or current situations affecting the organization.

D.

IT risk scenarios have been described in more detail in the COBIT 2019 Design Guide than IT issues in order to cover a wide range of potential risk.

Full Access
Question # 34

When assessing the current state of I&T, a continual improvement task includes:

A.

Identifying key enterprise and supporting alignment goals.

B.

Identifying potential process improvements.

C.

Raising executive awareness of IT and the value of EGIT.

D.

Developing metrics to monitor I&T performance.

Full Access
Question # 35

At which stage of the governance system design flow are design factors translated into governance and management priorities?

A.

Concluding the governance system design

B.

Refining the scope

C.

Determining the initial scope

D.

Understanding the enterprise strategy

Full Access
Question # 36

In which of the following phases should long-term targets be adjusted based on experience?

A.

How do we get there?

B.

Where are we now?

C.

What needs to be done?

D.

Did we get there?

Full Access
Question # 37

Which of the following is the PRIMARY benefit or output derived from setting targeted capability levels and performing a capability-level gap analysis for selected processes?

A.

Identification of process improvement opportunities

B.

Identification and mitigation of all identified risks

C.

Development of enterprise goals that align to established targets

D.

Development of a business case outline

Full Access
Question # 38

Which of the following situations is MOST likely the root cause for an enterprise lacking the required skills and competencies to execute an EGIT implementation program plan?

A.

The enterprise relies too heavily on the use of COBIT as its EGIT framework.

B.

Enterprise training does not include business and management skill development.

C.

Business staff are too often involved in IT processes that affect business processes and procedures.

D.

IT staff are too often focused on the achievement of business value.

Full Access
Question # 39

Which of the following is a KEY input to be considered when defining drivers for a COBIT implementation?

A.

IT process documentation

B.

Stakeholder map

C.

Business case outline

D.

Enterprise policies

Full Access