
Certified in the Governance of Enterprise IT
Domain 4Objective 6
Risk Management Lifecycle CGEIT Practice Questions (Page 1)
Part of the Risk Optimization domain, which accounts for 19% of the CGEIT exam.
32questions here
7free pages
8concepts
19%of the exam
Questions 1–5
- 1
Which activity is part of risk response implementation?
Select an answer first - 2
A company has implemented a new access control system to mitigate the risk of unauthorized access. Six months later, the risk manager wants to ensure the control is still effective. Which activity is most appropriate for the monitoring and review phase?
Select an answer first - 3
A company has implemented a new firewall to mitigate the risk of network intrusions. During a routine review, the security team discovers that the firewall logs show an increasing number of blocked connection attempts from a new type of malware. What is the most appropriate action in the monitoring and review phase?
Select an answer first - 4
A financial services firm has decided to mitigate the risk of insider data theft by implementing a data loss prevention (DLP) system. The risk team has approved the response plan. What is the most important next step in the risk management lifecycle?
Select an answer first - 5
A company has decided to mitigate the risk of data loss by implementing an encrypted backup solution. The risk response plan includes deploying the solution across all servers. During implementation, the IT team discovers that some legacy servers cannot support the encryption software. What is the most appropriate action?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CGEIT” is a trademark of its owner, used for identification only.