
Certified in the Governance of Enterprise IT
Domain 4Objective 5
Business Risk, Exposures and Threats CGEIT Practice Questions (Page 1)
Part of the Risk Optimization domain, which accounts for 19% of the CGEIT exam.
26questions here
6free pages
7concepts
19%of the exam
Questions 1–5
- 1
A technology startup is considering a new partnership that would share customer data with a third-party analytics firm. The startup's risk appetite is aggressive for growth but conservative for data privacy. The partnership could increase revenue by 30% but also increases the risk of a data breach. How should the startup's governance team evaluate this opportunity?
Select an answer first - 2
A utility company is updating its threat assessment. The risk team notes that a recent geopolitical conflict has increased the risk of cyberattacks on critical infrastructure. The company's control systems are air-gapped from the internet. Which threat should the team consider as the most plausible?
Select an answer first - 3
Which risk category is primarily associated with the failure of a third-party supplier to deliver critical components?
Select an answer first - 4
A regional bank is expanding its mobile banking app to include peer-to-peer transfers. The IT director notes that the new feature will rely on a third-party payment processor. The board asks for an assessment of the potential financial loss if the processor suffers a prolonged outage. Which type of business risk exposure should the IT governance team prioritize in this assessment?
Select an answer first - 5
Which of the following is an example of an external source of risk exposure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CGEIT” is a trademark of its owner, used for identification only.