New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca COBIT-2019 Exam - Topic 2 Question 61 Discussion

Actual exam question for Isaca's COBIT-2019 exam
Question #: 61
Topic #: 2
[All COBIT-2019 Questions]

An enterprise plans to outsource all of its noncore IT operations but wants to ensure the proper level of governance, risk and compliance (GRC) controls. Which of the following governance and management objectives would provide the MOST relevant management practices for the enterprise?

Show Suggested Answer Hide Answer
Suggested Answer: D

According to the ISACA COBIT 2019 Framework, the objective APO09 Managed Service Agreements provides the most relevant management practices for an enterprise that plans to outsource all its non-core IT operations but wants to ensure the proper level of governance, risk, and compliance (GRC) controls. This is specified in Domain 4, Objective 4.5: 'Manage the acquisition and maintenance of IT-related assets'. The APO09 objective provides guidance on how to manage service agreements with vendors, including the proper management of risks and compliance with related regulations and standards. Additionally, APO09 provides guidance on the proper selection and management of service providers, and how to ensure that the service agreements are properly monitored and evaluated to ensure the expected quality of service.


Contribute your Thoughts:

0/2000 characters
Devora
3 months ago
Surprised no one mentioned APO09 Managed Service Agreements!
upvoted 0 times
...
Krystina
3 months ago
AP013 Managed Security should definitely be a priority too!
upvoted 0 times
...
Dorothy
3 months ago
Wait, are we sure AP012 Managed Risk is enough?
upvoted 0 times
...
Kristel
4 months ago
Totally agree, vendor management is crucial!
upvoted 0 times
...
Kassandra
4 months ago
I think APO10 Managed Vendors is key for outsourcing.
upvoted 0 times
...
Lorenza
4 months ago
I’m leaning towards APO09 Managed Service Agreements because it seems to directly address the governance needed for outsourcing.
upvoted 0 times
...
Alaine
4 months ago
I practiced a question similar to this, and I think AP013 Managed Security is crucial, but it might not cover the vendor aspect as well as others.
upvoted 0 times
...
Lizette
4 months ago
I’m not entirely sure, but I feel like AP012 Managed Risk could also be relevant since they need to manage risks associated with outsourcing.
upvoted 0 times
...
Merilyn
5 months ago
I remember studying about the importance of vendor management in outsourcing, so I think APO10 Managed Vendors might be the best choice here.
upvoted 0 times
...
Nikita
5 months ago
I'm a bit confused by this question. All of the options seem relevant to some degree, but I'm not sure which one would be the "MOST relevant." I'll need to carefully read through each one and try to determine which one best addresses the specific requirements mentioned in the question.
upvoted 0 times
...
Carin
5 months ago
Okay, I've got this. Based on the question, I think the answer is B. APO10 Managed Vendors. This objective focuses on managing the relationship with external providers, which is exactly what the enterprise needs to do to ensure proper governance, risk, and compliance controls over its outsourced IT operations.
upvoted 0 times
...
Viola
5 months ago
Hmm, this is a tricky one. I'm not entirely sure which of these options would provide the most relevant management practices. I'll need to think through each one and try to determine which one best aligns with the enterprise's goals of ensuring proper GRC controls for its outsourced IT operations.
upvoted 0 times
...
Marguerita
5 months ago
This question is asking about the most relevant governance and management objectives for an enterprise that wants to outsource its noncore IT operations while ensuring proper GRC controls. I think I need to carefully consider each of the options and how they relate to the key requirements mentioned in the question.
upvoted 0 times
...
Herschel
5 months ago
Okay, let me think this through. RFM is a way to analyze customer behavior, so this is probably asking about a type of data analysis or customer segmentation technique. I'll have to weigh the options carefully.
upvoted 0 times
...
Marvel
1 year ago
You know, this question really makes me wonder if the exam writers have ever actually outsourced anything in their lives. But I digress, I'd go with D) APO09 Managed Service Agreements. Gotta have those SLAs on lockdown.
upvoted 0 times
Josefa
1 year ago
Managing vendors with B) APO10 is also key to successful outsourcing.
upvoted 0 times
...
Ruby
1 year ago
I think C) AP013 Managed Security is also important to ensure data protection.
upvoted 0 times
...
Vinnie
1 year ago
I agree, D) APO09 Managed Service Agreements is crucial for outsourcing IT operations.
upvoted 0 times
...
...
Larae
1 year ago
Well, well, look at us IT pros pondering over outsourcing. I say we all take a break and have a good laugh. But in all seriousness, I think B) APO10 Managed Vendors is the way to go. Gotta keep those vendors in check!
upvoted 0 times
...
Reed
1 year ago
Why do you think that?
upvoted 0 times
...
Leonor
1 year ago
Ah, the age-old question of outsourcing non-core IT. I'd go with C) AP013 Managed Security. Can't forget about the security implications, am I right?
upvoted 0 times
Lynette
1 year ago
Managed Risk is essential to consider as well, to mitigate any potential threats.
upvoted 0 times
...
Rebbeca
1 year ago
Managed Vendors could also be crucial for effective outsourcing.
upvoted 0 times
...
Luann
1 year ago
I think Managed Service Agreements are important too, to ensure everything is running smoothly.
upvoted 0 times
...
Mari
1 year ago
I agree, security is definitely a top priority.
upvoted 0 times
...
...
Deja
1 year ago
D) APO09 Managed Service Agreements seems like the way to go. You need to have solid service-level agreements in place when outsourcing, don't you?
upvoted 0 times
...
Paul
1 year ago
I think the correct answer is B) APO10 Managed Vendors. Outsourcing IT operations would require proper vendor management practices to ensure compliance and risk mitigation.
upvoted 0 times
Argelia
1 year ago
You're right, C) AP013 Managed Security is also important for governance and compliance.
upvoted 0 times
...
Norah
1 year ago
You're right, both B) APO10 Managed Vendors and C) AP013 Managed Security are crucial for outsourcing IT operations.
upvoted 0 times
...
Stevie
1 year ago
But don't you think C) AP013 Managed Security is also important for ensuring proper security controls?
upvoted 0 times
...
Veronika
1 year ago
I agree, B) APO10 Managed Vendors would be the most relevant for vendor management practices.
upvoted 0 times
...
Wilda
1 year ago
But what about security? Shouldn't that be a priority as well?
upvoted 0 times
...
Sommer
1 year ago
I agree, managing vendors is crucial for outsourcing IT operations.
upvoted 0 times
...
Catina
1 year ago
I think the correct answer is B) APO10 Managed Vendors.
upvoted 0 times
...
...
Louis
1 year ago
I disagree, I believe the answer is D) APO09 Managed Service Agreements.
upvoted 0 times
...
Reed
1 year ago
I think the answer is C) AP013 Managed Security.
upvoted 0 times
...

Save Cancel