What this quiz covers
This quiz focuses on Align It Strategy With Business Objectives, giving you a quick way to practice the rules, question types, and explanations that matter most for CPA Isc.
Which of the following represents a characteristic of an effective IT strategic plan?
CPA Isc Quiz
Practice Align It Strategy With Business Objectives in CPA Isc with focused quiz questions that help you check what you know, review explanations, and build confidence with test-style prompts.
This quiz focuses on Align It Strategy With Business Objectives, giving you a quick way to practice the rules, question types, and explanations that matter most for CPA Isc.
Try each quiz question before looking at the correct answer. Use the explanations to review missed ideas, then come back to similar questions until the pattern feels familiar.
Which of the following represents a characteristic of an effective IT strategic plan?
Explanation: An effective IT strategic plan is business-driven, contains measurable objectives, and is a living document reviewed regularly to adapt to changes. Answer B is correct. Excluding business unit input (A), focusing only on cost (C), or using a rigid long-term plan that is never revised (D) are characteristics of ineffective IT planning.
In the context of IT-business alignment maturity models, an organization that has ad hoc IT processes with no formal planning and alignment mechanisms would be classified at which maturity level?
Explanation: IT-business alignment maturity models (such as the Luftman model) classify organizations from Level 1 (Initial/Ad Hoc) through Level 5 (Optimized). An organization with no formal planning or alignment mechanisms is at Level 1 - Initial. Answer D is correct. Optimized (A) is the highest level. Managed (B) and Defined (C) are intermediate levels requiring more mature processes.
A company adopts a strategy to expand into new international markets. Which of the following IT strategy actions would best support this objective?
Explanation: International expansion requires IT systems that handle diverse currencies, languages, and regulatory environments. Proactively evaluating and implementing such systems directly aligns IT capabilities with the business objective. Answer B is correct. Budget cuts (A), hardware upgrades (C), and outsourcing (D) do not specifically address the international expansion objective.
Which of the following best describes IT governance?
Explanation: IT governance encompasses the leadership, organizational structures, and processes that ensure IT sustains and extends the organization's strategy and objectives. Answer A is correct. Day-to-day IT operations (B), vendor selection (C), and security auditing (D) are operational activities that fall within the broader governance framework but do not define governance itself.
An IT steering committee is best described as:
Explanation: An IT steering committee brings together business and IT leadership to align IT investments with strategic priorities, approve major projects, and oversee IT governance. Answer A is correct. IT steering committees are strategic, not operational (B), internal rather than external (C), and not focused on single implementations (D).
An organization's IT department regularly submits project proposals that are not approved because business leaders do not understand their value. Which of the following would most directly address this problem?
Explanation: When IT struggles to communicate value to business leaders, the solution is a structured business case process that frames IT investments in terms of business outcomes, ROI, and strategic fit. Answer D is correct. Replacing leadership (A), changing proposal formats (B), or increasing budget (C) do not address the fundamental communication gap.
Portfolio management in the context of IT governance refers to:
Explanation: IT portfolio management treats the collection of IT initiatives as a portfolio, balancing risk and return across projects and ensuring collective alignment with business strategy. Answer A is correct. Financial investment portfolios (B), software asset management (C), and vendor contract review (D) are distinct activities.
A company's IT department consistently delivers projects on time and within budget, but senior management remains dissatisfied because the projects do not seem to address pressing business needs. This situation most likely indicates:
Explanation: When IT projects are technically successful but fail to address business needs, the root cause is misalignment between IT priorities and organizational objectives. Answer B is correct. The projects are delivered on time and on budget, ruling out project management (A) or budget issues (C). Internal IT communication (D) is not the issue when the gap is between IT outputs and business needs.
Under the COBIT framework, which of the following is a governance objective as opposed to a management objective?
Explanation: COBIT distinguishes governance (Evaluate, Direct, Monitor) from management (Plan, Build, Run, Monitor). Evaluating stakeholder needs and setting direction is a governance activity. Answer D is correct. Delivering projects (A), managing incidents (B), and patching systems (C) are management and operational activities.
Which of the following best describes the concept of IT value delivery in the context of IT-business alignment?
Explanation: IT value delivery means IT investments translate into tangible business benefits - revenue growth, cost savings, risk reduction, or competitive advantage - that justify the costs. Answer A is correct. Budget adherence (B), defect-free delivery (C), and maximizing service availability (D) are operational metrics, not measures of value delivery.
The chief information officer (CIO) reports directly to the CEO and regularly presents IT strategy updates to the board of directors. This governance structure most directly supports:
Explanation: CIO reporting to the CEO and board engagement with IT strategy are hallmarks of mature IT governance, ensuring IT priorities are understood and endorsed at the highest levels of the organization. Answer B is correct. Incident resolution speed (A), procurement efficiency (C), and IT autonomy (D) are not the primary outcomes of this governance structure.
Which of the following is the most significant risk of failing to align IT strategy with business objectives?
Explanation: Misalignment's most significant risk is strategic: IT spending produces little or no business value, wasting capital and potentially leaving the organization behind competitors. Answer A is correct. Training gaps (B), licensing costs (C), and schedule delays (D) are operational issues that, while important, are not the primary strategic risk of IT-business misalignment.
A company's strategic plan calls for becoming a data-driven organization within three years. Which of the following IT strategy actions is most directly aligned with this objective?
Explanation: Becoming data-driven requires foundational investments in data storage, analytics tools, and governance structures that enable data-informed decision-making. Answer C is correct. Email migration (A), help desk systems (B), and network upgrades (D) are infrastructure activities not specifically linked to the data-driven objective.
Which of the following scenarios indicates strong IT-business alignment?
Explanation: Strong alignment exists when business leaders participate in IT governance and IT performance is measured by its contribution to business outcomes. Answer B is correct. Independent IT decision-making (A), backward-looking budgeting (C), and purely technical evaluation (D) are indicators of misalignment.
The 'Plan-Do-Check-Act' (PDCA) cycle is most commonly applied in IT strategy management to:
Explanation: The PDCA cycle is a continuous improvement model used in IT governance (and frameworks like ISO 27001) to systematically manage and improve processes. Answer A is correct. It is not an agile development methodology (B), a vendor contract framework (C), or an auditing schedule (D).
A company operating in a highly regulated industry is considering a major IT transformation. Which of the following should be the first step in developing the IT strategy for this transformation?
Explanation: Effective IT strategy begins with a thorough understanding of business needs, regulatory obligations, and the current state of IT - identifying the gap between where the organization is and where it needs to be. Answer A is correct. Vendor selection (B), cost calculation (C), and staffing (D) are subsequent steps that follow strategic assessment.
The COBIT framework is primarily used to:
Explanation: COBIT (Control Objectives for Information Technology) is an IT governance framework that provides principles, practices, and tools to help organizations govern and manage their information and technology. Answer D is correct. COBIT addresses governance alignment with business goals, not database design (A), encryption (B), or agile project management (C).
Which of the following best describes the relationship between IT risk and business risk?
Explanation: In most organizations, IT is deeply embedded in business operations, meaning IT risks (system failures, cyber incidents, data breaches) can directly affect the achievement of business objectives. Answer C is correct. Managing IT risk in isolation (A) or treating business risk as a subset of IT risk (B) misrepresents the relationship. IT risk is relevant across all industries (D).
Which of the following best illustrates the concept of 'IT agility' in support of business strategy?
Explanation: IT agility is the capacity to quickly reconfigure IT capabilities in response to business needs or market dynamics, enabling competitive responsiveness. Answer C is correct. Spare hardware inventories (A), on-premises control (B), and cross-trained staff (D) may support operations but do not define IT agility in the strategic sense.
Which of the following activities is most closely associated with the 'Monitor' component of IT governance under the COBIT framework?
Explanation: The Monitor governance objective in COBIT involves assessing IT performance against defined goals and objectives through KPIs, audits, and benchmarking. Answer B is correct. Budget approval (A) is a direction activity. Post-breach control implementation (C) is a management response. Technology platform selection (D) is a management planning activity.