ISC2 Governance, Risk and Compliance (CGRC) Practice Question
During a scheduled maintenance window, a database administrator is instructed by the system owner to install a new encryption module in production that night so the system complies with an upcoming regulatory deadline. The regular Change Control Board (CCB) will not convene until next week. To remain compliant with change-management policy, what should the administrator do next?
Open a security-incident ticket so the installation can proceed without going through change control.
Trigger the emergency change process and obtain expedited approval from an Emergency Change Control Board before deploying within the maintenance window.
Defer the deployment until the regular CCB meets next week, even if that misses the regulatory deadline.
Install the module immediately, then document the change and request retroactive CCB endorsement at next week's meeting.
Sound change-management practice requires documented authorization before any production deployment. When a change is urgent, the administrator should invoke the organization's emergency change process, which typically gathers an Emergency Change Advisory Board (E-CAB) or other expedited approval authority. This allows the change to be reviewed, risk-assessed, and formally approved the same day, rather than bypassing control or waiting for the next scheduled CCB meeting. Deploying without approval, retroactively seeking endorsement, or misclassifying the request as an incident all violate change-control requirements.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the role of an Emergency Change Advisory Board (E-CAB)?
Open an interactive chat with Bash
Why is documented authorization important in change management?
Open an interactive chat with Bash
What risks can occur if change-control policies are bypassed?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Compliance Maintenance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .