Deck 8: Governance of the Information Systems Organization

ملء الشاشة (f)
exit full mode
سؤال
This type of organization management is where IT controls most of its IT infrastructure in one location.

A) Distributed IS organization
B) Decentralized IS organization
C) Federalism
D) Joint-Control IS organization
E) Centralized IS organization
استخدم زر المسافة أو
up arrow
down arrow
لقلب البطاقة.
سؤال
Most companies would like to obtain the advantages derived from both centralized and decentralized organizational paradigms. What type of IT governance model would best help them to achieve this goal?

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
سؤال
IT decisions have been categorized by Peter Weill and Jeanne Ross.These categories include all of the following EXCEPT:

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT security
سؤال
______________ organizations scatter IT components in different locations to address local business needs.

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
سؤال
All of the following are frameworks for implementing Sarbanes-Oxley compliance EXCEPT:

A) COSO
B) BCP
C) COBIT
D) ITIL
E) Committee for Sponsoring Organization of the Treadway Commission
سؤال
The IT Governance Council reports directly to the board of directors or the ________.

A) CIO
B) CTO
C) CEO
D) COO
E) CFO
سؤال
________ of the 1980's allowed computing power to spread and gave rise to a decentralized approach to IT governance.

A) Servers
B) Mainframes
C) Networks
D) PCs
E) The WWW
سؤال
________ of the 1960's dictated a centralized approach to IT governance.

A) Servers
B) Mainframes
C) Networks
D) PCs
E) The WWW
سؤال
IT organizations implement powerful information systems like ERP and SCM that provide centralized data repositories.In addition,IT organizations provide business units with tools that individuals can use to report on and analyze collected data.This IT governance approach is best described as: ________.

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
سؤال
This is a balanced approach to managing a company's IT organization.

A) Centralization
B) Decentralization
C) Federalism
D) Joint-Control
E) Business Centricity
سؤال
Which one of the following can be said about IT security policies?

A) IT security policies define the scope and overall expectation for the company's information security program.
B) IT security policies discourage standardization and integration.
C) IT security policies require an IT-only perspective.
D) IT security policies complicate the decision-making process.
E) IT security policies are loose to allow for many choices.
سؤال
The decisions that set the foundation for IT capabilities shared throughout an organization fall into which one of the five major IT decision categories?

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT investment and prioritization
سؤال
The Sarbanes-Oxley Act of 2002 was primarily aimed at which functional unit of a corporation?

A) Marketing
B) Production
C) Sales
D) IT
E) Finance
سؤال
Bob has been tasked with creating a plan to keep his company functioning in case of emergency. He needs to create which ONE of the following plans?

A) Security Policy
B) Emergency Preparedness Plan
C) Disaster Continuity Plan
D) Collateral Damage Plan
E) Business Continuity Plan
سؤال
After its PlayStation Network service was compromised,Sony realized that it needed to establish better ____________ governance.

A) employee
B) customer
C) security
D) IT
E) data
سؤال
The decision about approval and justification of new technologies would fall into which one of the five major IT decision categories?

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT investment and prioritization
سؤال
What is a steering committee at the highest level called?

A) Executive Steering Committee
B) IT Governance Council
C) Executive Council of IT
D) Systems Steering Council
E) Chief Steering Committee
سؤال
This is an IT governance framework that is consistent with COSO controls.

A) HIPPA
B) COBIT
C) SoX
D) ISACA
E) ISO
سؤال
IT governance has two major components: the assignment of decision-making authority and responsibility,and the __________________________.

A) cost considerations
B) decision rights
C) business plan
D) capability maturity model
E) decision-making mechanisms
سؤال
All of the following are mechanisms that can be created to ensure good IT governance EXCEPT:

A) Policies
B) Review boards
C) Steering Committees
D) Consultants
E) IT Governance Council
سؤال
This is a highly specific measurement used to indicate whether business process goalsare being met.
سؤال
The establishment of information security policies requires IT leaders to set security standards and business leaders to understand the implications for users and business processes.Therefore,the IT governance archetype recommended in this situation is which one of the following?

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
سؤال
Security strategy is not a technical decision.
سؤال
A steering committee is geared only towards the highest level of the organization and reports directly to the board of directors or the CEO.
سؤال
This is a committee that is formally designated to approve,monitor and review specific topics that ensure IT governance.
سؤال
A steering committee works especially well with this particular IT governance archetype.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
سؤال
Business continuity planning must be designed to respond to its biggest threat,which is disgruntled or dishonest employees.
سؤال
Information security infrastructure decisions deal with technology selection and configuration.Therefore,the IT governance archetype recommended in this situation is which one of the following?

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
سؤال
This term is used to describe the increasingly powerful tools available to consumers that are impacting corporations.
سؤال
The global nature of business today makes complete centralization impossible.
سؤال
IT plays a major role in ensuring the accuracy of financial data.
سؤال
As a result of Sarbanes-Oxley Act,the CEO,CFO and CIO must certify financial accounting records.
سؤال
As a result of Sarbanes-Oxley,IT managers are now required to manage the level of controls needed to mitigate risk in business processes.
سؤال
This IT governance archetype consists of C-level executives and at least one other business group.An IT executive may be an additional participant.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
سؤال
The combinations of people to whom decision rights are allocated are classified by various IT governance ________.
سؤال
What act was passed in 2002 in response to the rogue accounting activities of major global corporations such as Enron,Worldcom and their accounting firm Arthur Andersen?
سؤال
This is the act through which behavior is aligned with business goals through empowerment and monitoring.
سؤال
This IT governance archetype consists only of business unit leaders,key process owners,or their delegates.
سؤال
The US Army is embracing BYOD by launching a program to ensure soldiers have the appropriate decision rights to select his/her computing device.
سؤال
This IT governance archetype consists of IT individuals or groups of IT executives.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
سؤال
Explain the value steering committees offer the IT organization.
سؤال
Explain how federalism is able to capture the benefits of centralized and decentralized IT governance while eliminating the drawbacks of each.
سؤال
Detail the 3 stages of business continuity planning.
Matching
سؤال
Match the disadvantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
Match the disadvantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.  <div style=padding-top: 35px>
سؤال
Match the allocation of decision rights below with the IT governance archetype it represents.
Match the allocation of decision rights below with the IT governance archetype it represents.  <div style=padding-top: 35px>
سؤال
Explain the role the IT organization has in ensuring a company's Sarbanes-Oxley compliance.
سؤال
Match the advantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
Match the advantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.  <div style=padding-top: 35px>
سؤال
Define federalism as it pertains to organizational structures. How does it improve on the centralized model?
سؤال
Match the organization with the IT governance approach it has chosen.
Match the organization with the IT governance approach it has chosen.  <div style=padding-top: 35px>
سؤال
Review the description of 3 different IT organizations and map the organization's design to the IT governance model it best represents.
Review the description of 3 different IT organizations and map the organization's design to the IT governance model it best represents.  <div style=padding-top: 35px>
سؤال
Why is it recommended that the IT governance archetype for an organization's information security strategy be business monarch?
سؤال
Match the SoX compliance methodology with its description.
Match the SoX compliance methodology with its description.  <div style=padding-top: 35px>
فتح الحزمة
قم بالتسجيل لفتح البطاقات في هذه المجموعة!
Unlock Deck
Unlock Deck
1/52
auto play flashcards
العب
simple tutorial
ملء الشاشة (f)
exit full mode
Deck 8: Governance of the Information Systems Organization
1
This type of organization management is where IT controls most of its IT infrastructure in one location.

A) Distributed IS organization
B) Decentralized IS organization
C) Federalism
D) Joint-Control IS organization
E) Centralized IS organization
E
2
Most companies would like to obtain the advantages derived from both centralized and decentralized organizational paradigms. What type of IT governance model would best help them to achieve this goal?

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
C
3
IT decisions have been categorized by Peter Weill and Jeanne Ross.These categories include all of the following EXCEPT:

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT security
E
4
______________ organizations scatter IT components in different locations to address local business needs.

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
5
All of the following are frameworks for implementing Sarbanes-Oxley compliance EXCEPT:

A) COSO
B) BCP
C) COBIT
D) ITIL
E) Committee for Sponsoring Organization of the Treadway Commission
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
6
The IT Governance Council reports directly to the board of directors or the ________.

A) CIO
B) CTO
C) CEO
D) COO
E) CFO
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
7
________ of the 1980's allowed computing power to spread and gave rise to a decentralized approach to IT governance.

A) Servers
B) Mainframes
C) Networks
D) PCs
E) The WWW
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
8
________ of the 1960's dictated a centralized approach to IT governance.

A) Servers
B) Mainframes
C) Networks
D) PCs
E) The WWW
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
9
IT organizations implement powerful information systems like ERP and SCM that provide centralized data repositories.In addition,IT organizations provide business units with tools that individuals can use to report on and analyze collected data.This IT governance approach is best described as: ________.

A) Distributed Control
B) Decentralized
C) Federalism
D) Joint-Control
E) Centralized
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
10
This is a balanced approach to managing a company's IT organization.

A) Centralization
B) Decentralization
C) Federalism
D) Joint-Control
E) Business Centricity
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
11
Which one of the following can be said about IT security policies?

A) IT security policies define the scope and overall expectation for the company's information security program.
B) IT security policies discourage standardization and integration.
C) IT security policies require an IT-only perspective.
D) IT security policies complicate the decision-making process.
E) IT security policies are loose to allow for many choices.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
12
The decisions that set the foundation for IT capabilities shared throughout an organization fall into which one of the five major IT decision categories?

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT investment and prioritization
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
13
The Sarbanes-Oxley Act of 2002 was primarily aimed at which functional unit of a corporation?

A) Marketing
B) Production
C) Sales
D) IT
E) Finance
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
14
Bob has been tasked with creating a plan to keep his company functioning in case of emergency. He needs to create which ONE of the following plans?

A) Security Policy
B) Emergency Preparedness Plan
C) Disaster Continuity Plan
D) Collateral Damage Plan
E) Business Continuity Plan
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
15
After its PlayStation Network service was compromised,Sony realized that it needed to establish better ____________ governance.

A) employee
B) customer
C) security
D) IT
E) data
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
16
The decision about approval and justification of new technologies would fall into which one of the five major IT decision categories?

A) IT principles
B) IT architecture
C) IT infrastructure
D) Business application needs
E) IT investment and prioritization
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
17
What is a steering committee at the highest level called?

A) Executive Steering Committee
B) IT Governance Council
C) Executive Council of IT
D) Systems Steering Council
E) Chief Steering Committee
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
18
This is an IT governance framework that is consistent with COSO controls.

A) HIPPA
B) COBIT
C) SoX
D) ISACA
E) ISO
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
19
IT governance has two major components: the assignment of decision-making authority and responsibility,and the __________________________.

A) cost considerations
B) decision rights
C) business plan
D) capability maturity model
E) decision-making mechanisms
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
20
All of the following are mechanisms that can be created to ensure good IT governance EXCEPT:

A) Policies
B) Review boards
C) Steering Committees
D) Consultants
E) IT Governance Council
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
21
This is a highly specific measurement used to indicate whether business process goalsare being met.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
22
The establishment of information security policies requires IT leaders to set security standards and business leaders to understand the implications for users and business processes.Therefore,the IT governance archetype recommended in this situation is which one of the following?

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
23
Security strategy is not a technical decision.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
24
A steering committee is geared only towards the highest level of the organization and reports directly to the board of directors or the CEO.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
25
This is a committee that is formally designated to approve,monitor and review specific topics that ensure IT governance.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
26
A steering committee works especially well with this particular IT governance archetype.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
27
Business continuity planning must be designed to respond to its biggest threat,which is disgruntled or dishonest employees.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
28
Information security infrastructure decisions deal with technology selection and configuration.Therefore,the IT governance archetype recommended in this situation is which one of the following?

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
29
This term is used to describe the increasingly powerful tools available to consumers that are impacting corporations.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
30
The global nature of business today makes complete centralization impossible.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
31
IT plays a major role in ensuring the accuracy of financial data.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
32
As a result of Sarbanes-Oxley Act,the CEO,CFO and CIO must certify financial accounting records.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
33
As a result of Sarbanes-Oxley,IT managers are now required to manage the level of controls needed to mitigate risk in business processes.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
34
This IT governance archetype consists of C-level executives and at least one other business group.An IT executive may be an additional participant.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
35
The combinations of people to whom decision rights are allocated are classified by various IT governance ________.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
36
What act was passed in 2002 in response to the rogue accounting activities of major global corporations such as Enron,Worldcom and their accounting firm Arthur Andersen?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
37
This is the act through which behavior is aligned with business goals through empowerment and monitoring.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
38
This IT governance archetype consists only of business unit leaders,key process owners,or their delegates.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
39
The US Army is embracing BYOD by launching a program to ensure soldiers have the appropriate decision rights to select his/her computing device.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
40
This IT governance archetype consists of IT individuals or groups of IT executives.

A) Business monarchy
B) IT monarchy
C) Feudal
D) Federal
E) IT Duopoly
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
41
Explain the value steering committees offer the IT organization.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
42
Explain how federalism is able to capture the benefits of centralized and decentralized IT governance while eliminating the drawbacks of each.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
43
Detail the 3 stages of business continuity planning.
Matching
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
44
Match the disadvantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
Match the disadvantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
45
Match the allocation of decision rights below with the IT governance archetype it represents.
Match the allocation of decision rights below with the IT governance archetype it represents.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
46
Explain the role the IT organization has in ensuring a company's Sarbanes-Oxley compliance.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
47
Match the advantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
Match the advantages below as either being associated with a centralized IT governance approach or a decentralized IT governance approach.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
48
Define federalism as it pertains to organizational structures. How does it improve on the centralized model?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
49
Match the organization with the IT governance approach it has chosen.
Match the organization with the IT governance approach it has chosen.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
50
Review the description of 3 different IT organizations and map the organization's design to the IT governance model it best represents.
Review the description of 3 different IT organizations and map the organization's design to the IT governance model it best represents.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
51
Why is it recommended that the IT governance archetype for an organization's information security strategy be business monarch?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
52
Match the SoX compliance methodology with its description.
Match the SoX compliance methodology with its description.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.
فتح الحزمة
k this deck
locked card icon
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 52 في هذه المجموعة.