Black Friday Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Question # 4

Which of the following is the MOST critical process tool to performing Implementation Phase 3-Where Do We Want to Be?

A.

Control self-assessment

B.

Gap assessment

C.

Cost-benefit analysis

Full Access
Question # 5

Which of the following is an important consideration when defining the roadmap in COBIT Implementation Phase 3 - Where Do We Want to Be?

A.

Agreed metrics for measuring outcomes

B.

Reporting procedures and requirements

C.

Change-enablement implications

Full Access
Question # 6

How should gaps identified between the current and target profiles be addressed?

A.

Comparing to and acting on the desired Tier level

B.

With a full project engagement to close all gaps

C.

Through a risk based-approach

Full Access
Question # 7

Which of the following COBIT 2019 governance principles corresponds to the CSF application stating that CSF profiles support flexibility in content and

structure?

A.

A governance system should be customized to the enterprise needs, using a set of design

factors as parameters.

B.

A governance system should focus primarily on the enterprise's IT function and information

processing.

C.

A governance system should clearly distinguish between governance and management

activities and structures.

Full Access
Question # 8

Documenting opportunities for improvement occurs within which implementation phase?

A.

Phase 4 - What Needs to Be Done?

B.

Phase 2 - Where Are We Now?

C.

Phase 3 - Where Do We Want to Be?

Full Access
Question # 9

An organization is concerned that there will be resistance in attempts to close gaps between the current and target profiles. Which of the following is the

BEST approach to gain support for the process?

A.

Implement organization-wide training on the CSF.

B.

Communicate management opinions regarding the project.

C.

Identify quick wins for implementation first.

Full Access
Question # 10

Which role will benefit MOST from a better understanding of the current cybersecurity posture by applying the CSF?

A.

Executives

B.

Acquisition specialists

C.

Legal experts

Full Access
Question # 11

Combining CSF principles with COBIT 2019 practices helps to ensure value, manage risk, and support mission drivers through support and direction of:

A.

the chief information officer and IT management.

B.

the board of directors and executive management.

C.

the chief information security manager and the data protection officer.

Full Access
Question # 12

When aligning to the NIST Cybersecurity Framework, what should occur after tier levels and framework core outcomes are determined?

A.

Report discovered issues to senior management.

B.

Assign mitigating control development.

C.

Compare current and target profiles.

Full Access
Question # 13

The CSF Implementation Tiers distinguish three fundamental dimensions of risk management to help enterprises evaluate which of the following?

A.

Cybersecurity posture

B.

Cybersecurity threats

C.

Cybersecurity landscape

Full Access
Question # 14

Which of the following is MOST likely to cause an organization's NIST Cybersecurity Framework (CSF) implementation to fail?

A.

Organizational training on the CSF is not provided.

B.

Potential benefits of proposed improvements are not considered.

C.

The implementation timeline is too long.

Full Access
Question # 15

Which of the following is MOST important for successful execution of CSF implementation Step 6 - Determine, Analyze, and Prioritize Gaps?

A.

Have management review and approve the gap analysis.

B.

Engage external experts to perform a cost-benefit analysis.

C.

Engage business and IT process owners for internal expertise.

Full Access