ISC2 Governance, Risk and Compliance (CGRC) Practice Question
During a quarterly self-assessment, you discover that several servers removed from the data center months ago still appear as active in the configuration management database, violating the organization's approved hardware baseline. Which action would most directly strengthen continuous monitoring of physical assets to restore compliance?
Require technicians to apply tamper-evident asset tags to equipment during initial installation.
Schedule a full physical inventory of all racks once each year instead of every two years.
Deploy an automated discovery solution that updates the CMDB with each device's serial number and location on a scheduled basis.
Increase video surveillance retention in all data-center areas from 30 to 90 days.
Continuous monitoring of physical assets requires timely, automated reconciliation between what is actually installed and what is recorded. Implementing an automated asset discovery tool that routinely scans the network and updates the CMDB with each device's serial number, location, and status provides near-real-time visibility and quickly flags discrepancies, satisfying CM-8 and related monitoring controls. Merely conducting a wall-to-wall inventory annually leaves long periods when records can be inaccurate. Extending video retention or adding tamper-evident seals helps physical security but does not keep inventory records current, so those measures do not directly address the compliance gap identified.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a CMDB?
Open an interactive chat with Bash
How do automated discovery solutions work?
Open an interactive chat with Bash
What are CM-8 controls?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Compliance Maintenance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .