← All ITA Flashcard Decks

Mixed Deck — All ITA Topics Flashcards

100 cards from real ITA practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 20 Mixed Deck — All ITA Topics flashcards as text
  1. During the security architecture design phase for a new cloud-native application, an architect leads a structured exercise to identify and evaluate potential security flaws from an attacker's perspective. What is this proactive process called?

    Answer: Threat Modeling

    Threat modeling is a structured, proactive process used early in the development lifecycle to identify, analyze, and mitigate potential security threats and architectural weaknesses before the system is built. Penetration testing and vulnerability scanning are typically performed on a system that has already been built.

  2. Which tool monitors data flow between systems?

    Answer: Integration dashboard

    An integration dashboard is a centralized tool or interface designed to provide real-time visibility and monitoring of data flow and processes between integrated systems. It allows administrators to track the status of integrations, identify errors, monitor performance, and gain insights into the overall health of the integrated environment. This helps in proactive management and troubleshooting of integration issues.

  3. What is a challenge of misalignment between IT and business?

    Answer: Inefficiencies and unmet business needs.

    When IT and business strategies are not aligned, IT projects may fail to address critical business requirements or may even hinder operational processes. This misalignment leads to significant inefficiencies, wasted resources, and a failure to leverage technology effectively to support business goals. Ultimately, it results in unmet business needs and a lack of strategic value from IT investments.

  4. What is a key benefit of business-IT alignment?

    Answer: Improved business agility and performance.

    When IT strategy is closely aligned with business objectives, an organization can respond more quickly and effectively to market changes and new opportunities. This alignment enhances business agility by ensuring IT systems and processes support rapid adaptation and innovation. Ultimately, this leads to improved operational efficiency, better decision-making, and overall stronger business performance.

  5. An enterprise is transitioning its monolithic e-commerce platform to a microservices architecture. Which of the following is the primary advantage the enterprise can expect from this transition in terms of application architecture?

    Answer: Increased agility and the ability to scale services independently.

    Microservices architecture structures an application as a collection of loosely coupled services. This allows for individual services to be developed, deployed, and scaled independently, which significantly increases business agility and improves the application's scalability and resilience. [9, 13] While monolithic applications can be simpler to deploy initially, they become difficult to scale and maintain as they grow. [9, 14]

  6. A business architect is tasked with creating a model that defines what an organization does to achieve its strategic objectives, independent of how it does it. Which of the following business architecture models would be most appropriate for this purpose?

    Answer: A business capability map

    A business capability map focuses on the fundamental abilities or functions of a business (the 'what'), abstracting away from specific processes, organizational structures, or technologies (the 'how'). This makes it the ideal model for representing the stable, core functions needed to execute business strategy.

  7. Which of the following BEST describes the primary purpose of an organization map within the context of business architecture?

    Answer: To link business units to the capabilities they possess and the value streams they participate in.

    Unlike a traditional org chart, an organization map in business architecture is used to show how various business units relate to other architectural elements, such as capabilities and value streams. Its purpose is to provide structural context for how the business operates, not to detail HR-specific reporting lines.

  8. A financial services company is implementing a new architecture governance function. Which of the following metrics would be most effective for measuring the business alignment of their IT architecture?

    Answer: The percentage of IT projects that directly support a documented strategic business objective.

    Business alignment metrics are crucial for demonstrating the value of enterprise architecture. Measuring the percentage of IT projects that are directly linked to strategic business goals provides a clear indicator of how well the IT landscape is supporting the overall mission of the organization. While other metrics are useful for operational efficiency or compliance, this one directly addresses strategic alignment.

  9. Which architecture framework is known for its matrix-based structure, organized around stakeholder perspectives (e.g., Planner, Owner, Designer) and interrogatives (What, How, Where, Who, When, Why)?

    Answer: Zachman Framework

    The Zachman Framework is fundamentally a taxonomy or ontology for organizing architectural artifacts. It is well-known for its two-dimensional matrix structure that uses interrogatives (What, How, Where, etc.) for columns and stakeholder perspectives (Planner, Owner, etc.) for rows.

  10. Which of the following BEST describes the primary role of an enterprise architect in the context of Business Technology Strategy?

    Answer: To bridge the gap between business strategy and technology execution by ensuring alignment.

    The core function of an enterprise architect is to ensure that the IT infrastructure and technology solutions are aligned with the organization's business goals. They act as a bridge, translating business strategy into a technology roadmap and governance structure that enables the desired business outcomes.

  11. In the context of enterprise architecture maturity models, what does an organization at NASCIO's EA Maturity Level 3 ('Defined') typically demonstrate?

    Answer: Documented and standardized EA processes across the organization

    At NASCIO EA Maturity Level 3 (Defined), organizations have documented, standardized, and communicated EA processes that are consistently applied across the enterprise.

  12. The Open Group Architecture Framework (TOGAF) categorizes architectures into four domains. Which domain specifically addresses the software applications, their interactions, and relationships to business processes?

    Answer: Application Architecture

    Application Architecture in TOGAF defines the individual application systems deployed, their interactions, and their relationships to core business processes of the organization.

  13. What is the primary goal of risk management in IT?

    Answer: Minimize the impact of security threats

    Risk management in IT is a systematic process of identifying, assessing, and controlling threats to an organization's information assets. Its primary goal is not to eliminate all risks, which is often impossible, but rather to minimize the potential negative impact of security threats and vulnerabilities on business operations and data. This ensures business continuity and protects valuable information.

  14. When applying TOGAF's Architecture Compliance review, what does a 'Consistent' compliance rating indicate?

    Answer: The project conforms to the spirit of the architecture but may not meet all standards

    A 'Consistent' compliance rating in TOGAF indicates that the project conforms to the general intent of the enterprise architecture but may have gaps in meeting every specific standard or guideline.

  15. Which policy defines how users access resources in an organization?

    Answer: Access control policy

    An access control policy is a set of rules that dictates who can access specific resources (e.g., files, systems, applications) within an organization and what actions they are permitted to perform. It defines user roles, permissions, and authentication requirements, ensuring that only authorized individuals can interact with sensitive information and systems. This policy is crucial for maintaining data confidentiality, integrity, and availability.

  16. An IT architect is developing a business technology strategy for a retail company planning to expand its e-commerce platform. Which of the following is the MOST critical first step in this process?

    Answer: Articulating the company's vision and strategic business goals for the next 3-5 years.

    The foundation of any effective business technology strategy is its alignment with the overall business objectives. Before any technical evaluation or governance setup, the architect must understand what the business aims to achieve. Articulating the company vision and strategic goals ensures that all subsequent technology decisions directly support the desired business outcomes, such as market expansion, revenue growth, or enhanced customer experience.

  17. What is the purpose of a VLAN?

    Answer: Segment network traffic logically

    A VLAN (Virtual Local Area Network) allows network administrators to logically segment a single physical network into multiple broadcast domains. This means devices on different VLANs cannot communicate directly without a router, even if they are connected to the same physical switch. VLANs improve network performance, security, and manageability by isolating traffic and reducing broadcast domains.

  18. An organization is shifting its security posture from a traditional perimeter-based model to one that mandates verification for every access request, regardless of whether it originates from inside or outside the corporate network. Which security architecture model BEST represents this modern approach?

    Answer: Zero Trust Architecture

    Zero Trust Architecture is a security model based on the principle of "never trust, always verify." It requires strict identity verification for every user and device trying to access resources on a private network, eliminating the concept of a trusted internal network.

  19. Which of the following best describes the primary purpose of an N-Tier application architecture?

    Answer: To separate concerns by dividing the application into logical layers, such as presentation, business logic, and data access.

    N-Tier architecture, often seen as a three-tier architecture (presentation, business/logic, and data), is designed to separate the application's responsibilities into distinct layers. [20, 21] This separation of concerns improves maintainability, scalability, and flexibility, as each layer can be developed and managed independently without affecting the others. [18, 20]

  20. What technology is commonly used for real-time data integration?

    Answer: API

    An API (Application Programming Interface) is a set of definitions and protocols that allows different software applications to communicate with each other. APIs are commonly used for real-time data integration because they enable direct, programmatic access to application functionalities and data. This allows systems to request and exchange information instantly, facilitating dynamic and responsive interactions.