ISC2 Governance, Risk and Compliance (CGRC) Practice Question
Following an assessment that revealed unencrypted sensitive data on production databases, you are determining resources needed to estimate how long remediation will take. Which of the following is considered a technical resource for the risk response plan?
Revision of the organization's data classification policy to mandate encryption
Budget approval for consulting fees to develop the remediation strategy
Licenses for a database transparent data-encryption feature and compatible hardware security modules
Allocation of two additional database administrators for three months
Technical resources are the specific technologies, tools, or systems that must be acquired, configured, or integrated to carry out a chosen mitigation. Procuring licenses for a database's transparent data-encryption capability and the required hardware security modules represents technology that engineers must install and test, so it is a technical resource affecting the project schedule. Extra administrators are a personnel resource, consulting funds are a financial resource, and updating a policy is an administrative control-not a technical tool-so those items do not meet the definition of a technical resource.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a hardware security module (HSM)?
Open an interactive chat with Bash
How does transparent data encryption (TDE) function in databases?
Open an interactive chat with Bash
What is the role of data classification policies in risk management?
Open an interactive chat with Bash
What is a hardware security module (HSM)?
Open an interactive chat with Bash
What does transparent data encryption (TDE) mean?
Open an interactive chat with Bash
Why are personnel resources not considered technical resources?
Open an interactive chat with Bash
What is a hardware security module (HSM)?
Open an interactive chat with Bash
What is database transparent data encryption (TDE)?
Open an interactive chat with Bash
What is the difference between technical resources and administrative controls in a risk response plan?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Assessment/Audit of Security and Privacy Controls
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .