CGEIT Exam Question 76

An enterprise learns that a new privacy regulation was recently published to protect customers in the event of a breach involving personally identifiable information (PII). The IT risk management team's FIRST course of action should be to:
  • CGEIT Exam Question 77

    An enterprise decides to accept the IT risk of a subsidiary located in another country even though it exceeds the enterprise's risk appetite. Which of the following would be the BEST justification for this decision?
  • CGEIT Exam Question 78

    Which of the following is the BEST way to ensure all enterprise employees understand the corporate code of business conduct?
  • CGEIT Exam Question 79

    An IT risk committee is trying to mitigate the risk associated with a newly implemented bring your own device (BYOD) policy and supporting mobile device management (MDM) tools. Which of the following would be the BEST way to ensure employees understand how to protect sensitive corporate data on their mobile devices?
  • CGEIT Exam Question 80

    In which of the following types of biases does the data collection itself interfere with the process it is measuring?