ISC2 Governance, Risk and Compliance (CGRC) Practice Question
During continuous monitoring of a cloud-hosted application, management requires notification within minutes whenever critical configuration files are altered outside an approved change window so they can show ongoing compliance with policy. Which monitoring control best satisfies this requirement?
Automated file integrity monitoring that hashes and compares configuration files, issuing alerts on deviations
Scheduled vulnerability scans of the application servers
Quarterly manual review of change tickets and configuration baselines
Aggregating firewall logs in a SIEM to identify anomalous outbound traffic patterns
Automated file integrity monitoring tools take cryptographic hashes of specified files and compare them at frequent, configurable intervals. Any unauthorized modification triggers an immediate alert and produces evidence that can be retained for audits. Vulnerability scans focus on missing patches and misconfigurations but do not provide near real-time change detection. Manual quarterly reviews are too infrequent to meet the stated timing requirement. Aggregating firewall logs can reveal suspicious traffic, yet it will not reliably detect silent changes to configuration files themselves.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is file integrity monitoring and how does it work?
Open an interactive chat with Bash
Why are vulnerability scans not suitable for detecting real-time file changes?
Open an interactive chat with Bash
How does a cryptographic hash ensure file integrity?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Compliance Maintenance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .