ISC2 Governance, Risk and Compliance (CGRC) Practice Question
While revising your agency's information-security roadmap, you must comply with the May 2021 Executive Order that directs Federal Civilian Executive Branch agencies to strengthen their cyber defenses. Which of the following activities is specifically mandated by that Executive Order and therefore must be scheduled in your plan?
Apply FIPS 197-validated full-disk encryption to every end-user device within 30 days.
Decommission all information systems more than ten years old within the next fiscal year.
Deploy multi-factor authentication and ensure encryption for data at rest and in transit across the enterprise within 180 days.
Contract with an external provider to deliver annual security-awareness training to all personnel.
The May 12, 2021 Executive Order 14028, titled "Improving the Nation's Cybersecurity," requires all Federal Civilian Executive Branch agencies to adopt multi-factor authentication and encrypt data at rest and in transit within 180 days of the order's issuance. The directive does not order the blanket retirement of systems older than a decade, dictate a 30-day deadline for implementing FIPS 197 full-disk encryption on every endpoint, or require that security-awareness training be outsourced. Those items may be good practices, but they are not explicitly called for by EO 14028, whereas the MFA and encryption mandate is.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Executive Order 14028?
Open an interactive chat with Bash
What does multi-factor authentication (MFA) mean?
Open an interactive chat with Bash
What is data encryption at rest and in transit?
Open an interactive chat with Bash
What is Executive Order 14028?
Open an interactive chat with Bash
What is multi-factor authentication (MFA), and why is it important?
Open an interactive chat with Bash
What does it mean to encrypt data at rest and in transit?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Security and Privacy Governance, Risk Management, and Compliance Program
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .