According to the principles for a governance framework, which of the following is a PRIMARY consideration when
addressing new issues within a flexible and open framework?
A. Maintaining integrity and consistency
B. Aligning with internal IT policies and procedures
C. Identifying related industry standards
Correct Answer: A

Which COBIT domain of management objectives incorporates managed risk?
A. Build, acquire and implement (BAI)
B. Align, plan and organize (APO)
C. Deliver, service and support (DSS)
Correct Answer: B
Reference: https://graser.co.at/en/cobit-5-understand-the-framework/

Which of the following components of the governance system are required for successful completion of all activities?
A. People, skills and competencies
B. Processes
C. Principles, policies and frameworks
Correct Answer: A

Which of the following metrics would BEST enable an enterprise to evaluate an alignment goal specifically related to
security of information and privacy?
A. Ratio and extent of erroneous business decisions in which erroneous IandT-related information was a key factor
B. Number of critical business processes supported by up-to-date infrastructure and applications C. Number of
confidentiality incidents causing financial loss, business disruption or public embarrassment.
Correct Answer: C
Reference: https://community.mis.temple.edu/mis5203sec001sp2019/files/2019/01/COBIT-2019Framework-Introductionand-Methodology_res_eng_1118.pdf (31)

Which enterprise role ensures the board is kept informed of major decisions related to value delivery of IandT
deployment in accordance with the enterprise strategy?
A. Chief information officer
B. Executive committee
C. Chief executive officer
Correct Answer: A

Which of the following is a principle of a proper governance framework?
A. It should be based on a conceptual model.
B. It should be independent of other standards, frameworks and regulations.
C. It should be self-contained and not allow for the addition of new content.
Correct Answer: A
Reference: https://oltconsulting.net/wp-content/uploads/2018/06/Gobierno-IT.pdf

Within a tailored enterprise governance system, a sourcing model for information and technology is associated with:
A. design factors.
B. relevant industry frameworks.
C. focus areas.
Correct Answer: A
Design factors can influence the blueprint of your enterprise\\’s governance system and position it for the
successful use of IandT.
Reference: https://www.escoute.com/finally-a-guide-for-tailoring-a-governance-system-for-information-andtechnology/

Who is responsible for the oversight of structures and mechanisms that drive enterprise governance of information and
technology (EGIT)?
A. Individual business units
B. External regulators
C. The board
Correct Answer: C
Reference: https://www.isaca.org/resources/isaca-journal/issues/2017/volume-4/exploring-how-corporategovernancecodes-address-it-governance

An enterprise that specializes in software development is designing a new IT governance system as part of a transition
from traditional waterfall to a more agile approach. Which step in the design phase would this transition impact the
A. Compliance requirements
B. Implementation method
C. Sourcing model
Correct Answer: B

Which of the following is based on generic components of a governance system but are tailored for a specific purpose
or context within a focus area?
A. Guiding principles
B. Variant components
C. Design factors
Correct Answer: B
These components (of a governance system) can be either generic or “variants of generic.” Generic components are
described in the COBIT Core Model and apply in principle to any situation (although they “generally need customization
before being practically implemented.”) Whereas variants are based on the generic components but tailored for a
specific purpose or context within a focus area.
Reference: https://www.joetheitguy.com/cobit-2019-key-changes-cobit-5/

Which of the following describes the COBIT performance model?
A. The COBIT performance model is a stand-alone model that can be used in conjunction with the COBIT core model.
B. The COBIT performance model is integrated into the COBIT core model.
C. The COBIT performance model is unique and not aligned with existing maturity and capability models.
Correct Answer: B
Reference: https://community.mis.temple.edu/mis5203sec001sp2019/files/2019/01/COBIT-2019Framework-Introductionand-Methodology_res_eng_1118.pdf

Within an organizational structure chart (RACI chart), which role drives a given task or process?
A. Responsible (R) role
B. Accountable (A) role
C. Informed (I) role
Correct Answer: B
Reference: https://ptgmedia.pearsoncmg.com/images/9780134772806/samplepages/9780134772806_Sample.pdf

Which of the following would be an appropriate metric associated with an enterprise goal of “Business service continuity
and availability”?
A. Satisfaction levels of board and executive management with business process capabilities
B. Ratio of significant incidents that were not identified in risk assessments vs. total incidents
C. Number of business processing hours lost due to unplanned service interruptions
Correct Answer: C
Reference: https://www.oo2.fr/sites/default/files/document/pdf/cobit-5_res_eng_1012.pdf (58)

