Certified in the Governance of Enterprise IT (CGEIT) — Question 5
A business case indicates an enterprise would reduce costs by implementing a bring your own device (BYOD) program allowing employees to use personal devices for e-mail. Which of the following should be the FIRST governance action?
Answer options
- A. Assess the enterprise architecture (EA).
- B. Update the BYOD policy.
- C. Update the network infrastructure.
- D. Assess the BYOD risk.
Correct answer: A
Explanation
The correct answer is A because assessing the enterprise architecture (EA) is crucial to understand how the BYOD program will fit within the existing infrastructure and processes. Updating the BYOD policy (B) and network infrastructure (C) are important but should follow a thorough assessment of the current architecture. Evaluating BYOD risk (D) is also critical but comes after understanding the EA.