ISC2 Governance, Risk and Compliance (CGRC) Practice Question
After a string of tailgating incidents, a hospital assigns trained security officers to verify badges, maintain visitor logs, and escort all non-employees entering the server room. Under NIST control classifications, this security measure is primarily an example of which type of control?
NIST divides security and privacy safeguards into management, operational, technical, and common controls. Operational controls are those mainly implemented and performed by people, often supported by technology, and include activities such as physical and environmental protection, incident response, awareness and training, and personnel security. Stationing guards to check identification, keep manual logs, and escort visitors is a human-executed measure that protects physical access, so it falls squarely under operational controls. Technical controls (e.g., encryption or firewalls) rely on automated mechanisms; management controls focus on policy or oversight (e.g., risk assessment, planning); common controls are shared across multiple systems or organizations. Because the described safeguard is people-centric and operational in nature, it is classified as an operational control.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are operational controls in NIST classifications?
Open an interactive chat with Bash
How do technical and operational controls differ?
Open an interactive chat with Bash
What is a 'common control' under NIST categories?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Implementation of Security and Privacy Controls
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .