New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CGEIT Exam - Topic 3 Question 12 Discussion

Actual exam question for Isaca's CGEIT exam
Question #: 12
Topic #: 3
[All CGEIT Questions]

An IT strategy committee has reviewed an audit report indicating sales employees are using personal smartphones to conduct corporate business. Although the committee appreciates the business benefits, it is also concerned with the security risk. To deliver the business benefit, what should be the committee's FIRST recommendation?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Glendora
4 months ago
Documenting procedures is a good start, but it feels like a band-aid solution.
upvoted 0 times
...
Cornell
4 months ago
A risk assessment is crucial before anything else, though.
upvoted 0 times
...
Iluminada
4 months ago
Wait, are they really using personal phones for work? That sounds risky!
upvoted 0 times
...
Cecily
4 months ago
Agree, but training is super important too!
upvoted 0 times
...
Patria
5 months ago
I think they should definitely update the corporate security policy first.
upvoted 0 times
...
Kenny
5 months ago
I practiced a question like this before, and I think documenting procedures is important, but it might be better to assess the risks first. So, I’m torn between A and C.
upvoted 0 times
...
Helga
5 months ago
I feel like improving training courses could help, but it might not address the immediate security concerns. I’m leaning towards option C for a more thorough approach.
upvoted 0 times
...
Alpha
5 months ago
I’m not entirely sure, but I remember something about updating security policies being a common first step in similar scenarios. Maybe option D is the way to go?
upvoted 0 times
...
Olga
5 months ago
I think the first step should be to perform a risk assessment on personal device data protection. It’s crucial to understand the risks before implementing any procedures.
upvoted 0 times
...
Arlene
5 months ago
I'm a bit confused by the different logging and monitoring options presented here. I'll need to review my notes on cloud networking and security best practices to make the right choice.
upvoted 0 times
...
Charolette
5 months ago
This looks like a straightforward question on the benefits of employee appraisals. I'll go through each option carefully and select the ones that apply.
upvoted 0 times
...
Gail
5 months ago
This question seems straightforward. I think the key is to focus on the conditions that would allow the award to be excluded from Kent's gross income.
upvoted 0 times
...

Save Cancel