Certified Information Systems Auditor (CISA) — Question 131
An IS auditor finds that while an organization's IT strategy is heavily focused on research and development, the majority of projects in the IT portfolio focus on operations and maintenance. Which of the following is the BEST recommendation?
Answer options
- A. Review priorities in the IT portfolio.
- B. Change the IT strategy to focus on operational excellence.
- C. Align the IT portfolio with the IT strategy.
- D. Align the IT strategy with business objectives.
Correct answer: C
Explanation
The best recommendation is to align the IT portfolio with the IT strategy to ensure that the projects undertaken are in line with the organization's strategic goals. Reviewing priorities or changing the strategy may address symptoms but won't ensure alignment. Aligning the IT strategy with business objectives is also important, but the immediate focus should be on the IT portfolio's alignment with the existing strategy.