
Certified in the Governance of Enterprise IT
Domain 4Objective 1
Risk Frameworks and Standards CGEIT Practice Questions (Page 5)
Part of the Risk Optimization domain, which accounts for 19% of the CGEIT exam.
23questions here
5free pages
5concepts
19%of the exam
Questions 21–23
- 21
A company has a decentralized IT structure where each business unit manages its own IT risks. The board wants to centralize risk reporting without disrupting business unit operations. What is the best approach to integrate risk management across the organization?
Select an answer first - 22
A global retail company operates in multiple jurisdictions with varying data protection laws. The board wants a single risk framework that can be applied consistently across all regions while still allowing local compliance teams to address specific regulatory requirements. What is the best approach?
Select an answer first - 23
A bank is required by its regulator to conduct an operational risk assessment that includes scenario analysis and capital calculation. The IT risk team also needs to assess cyber risks. Which combination of frameworks/standards should the bank use?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CGEIT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CGEIT” is a trademark of its owner, used for identification only.