ISC2 Governance, Risk and Compliance (CGRC) Practice Question
During an assessment of backup processes, you must interview the backup operator to verify the control requiring quarterly rotation of encryption keys. Which question best validates the operator's understanding of the control and offers immediate evidence of its implementation?
Can you walk me through the key-rotation steps you perform each quarter and provide the most recent rotation log or ticket?
How much time does key rotation usually add to your backup window?
Who approved the purchase of your backup encryption hardware?
Is your team planning any changes to the key-rotation process next year?
The most effective interview questions ask the individual to describe the exact steps they perform and request direct artifacts that corroborate the description. Requesting the procedure the operator follows and the latest rotation log or ticket confirms both knowledge of the control and its execution, satisfying the interview method's goal of tying personnel understanding to objective evidence. Asking about added time, purchase approval, or future plans may provide background information but does not directly demonstrate that the control is currently implemented and functioning as required.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are encryption keys and why should they be rotated periodically?
Open an interactive chat with Bash
What logs or tickets are generated during an encryption key rotation?
Open an interactive chat with Bash
How do key rotation controls align with governance and compliance frameworks?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Assessment/Audit of Security and Privacy Controls
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .