hiexam
isaca · CGEIT · Q425 · multiple_choice · topic_1

A regulatory audit assessed an enterprise's main transactional application as noncompliant. In addition to fines and re…

A regulatory audit assessed an enterprise's main transactional application as noncompliant. In addition to fines and required corrections, an agreement was reached to implement a set of governance controls over IT. Accountability for these controls is BEST assigned to which of the following?
  • A.Internal audit director
  • B.CIO
  • C.The board of directors
  • D.Application users
Explanation
My thought is BOD should be accountable while IA director to be responsible.

Reference: examtopics_top_comment

Practice with progress tracking

Sign in to track wrong answers, get spaced-repetition reminders, and run timed exam mode.