1. Effective IT governance requires organizational structures and processes to ensure that:
A) the organization's strategies and objectives extend the IT strategy. B) the business strategy is derived from an IT strategy. C) IT governance is separate and distinct from the overall governance. D) the IT strategy extends the organization's strategies and objectives.
2. Which of the following is the MOST important element for the successful implementation of IT governance?
A) Implementing an IT scorecard B) Identifying organizational strategies C) Performing a risk assessment D) Creating a formal security policy
3. The MAJOR consideration for an IS auditor reviewing an organization's IT project portfolio is the:
A) IT budget. B) existing IT environment. C) business plan. D) investment plan.
4. When implementing an IT governance framework in an organization the MOST important objective is:
A) IT alignment with the business. B) accountability. C) value realization with IT. D) enhancing the return on IT investments.
5. The ultimate purpose of IT governance is to:
A) encourage optimal use of IT. B) reduce IT costs. C) decentralize IT resources across the organization. D) centralize control of IT.
1. Right Answer: D Explanation: Effective IT governance requires that board and executive management extend governance to IT and provide the leadership, organizational structures and processes that ensure that the organization's IT sustains and extends the organization's strategies and objectives, and that the strategy is aligned with business strategy. Choice A is incorrect because it is the IT strategy that extends the organizational objectives, not the opposite. IT governance is not an isolated discipline; it must become an integral part of the overall enterprise governance.
2. Right Answer: B Explanation: The key objective of an IT governance program is to support the business, thus the identification of organizational strategies is necessary to ensure alignment between IT and corporate governance. Without identification of organizational strategies, the remaining choices-even if implemented-would be ineffective.
3. Right Answer: C Explanation: One of the most important reasons for which projects get funded is how well a project meets an organization's strategic objectives. Portfolio management takes a holistic view of a company's overall IT strategy. IT strategy should be aligned with the business strategy and, hence, reviewing the business plan should be the major consideration. Choices A, B and D are important but secondary to the importance of reviewing the business plan,
4. Right Answer: A Explanation: The goals of IT governance are to improve IT performance, to deliver optimum business value and to ensure regulatory compliance. The key practice in support of these goals is the strategic alignment of IT with the business {choice A). To achieve alignment, all other choices need to be tied to business practices and strategies.
5. Right Answer: A Explanation: IT governance is intended to specify the combination of decision rights and accountability that is best for the enterprise. It is different for every enterprise.Reducing IT costs may not be the best IT governance outcome for an enterprise. Decentralizing IT resources across the organization is not always desired, although it may be desired in a decentralized environment. Centralizing control of IT is not always desired. An example of where it might be desired is an enterprise desiring a single point of customer contact.
Leave a comment