nerdexam
(ISC)2(ISC)2

CGRC · Question #236

CGRC Question #236: Real Exam Question with Answer & Explanation

Sign in or unlock CGRC to reveal the answer and full explanation for question #236. The question stem and answer options stay visible for context.

Security and Privacy Governance, Risk Management, and Compliance Program

Question

The process of managing risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system, and includes: (i) the conduct of a risk assessment; (ii) the implementation of a risk mitigation strategy; and (iii) employment of techniques and procedures for the continuous monitoring of the security state of the information system. Response:

Options

  • ARisk Management
  • BProcurement management
  • CChange management
  • DConfiguration management

Unlock CGRC to see the answer

You've previewed enough free CGRC questions. Unlock CGRC for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Risk Management#Risk Assessment#Risk Mitigation#Continuous Monitoring
Full CGRC PracticeBrowse All CGRC Questions