Prepare for the Certified in Governance, Risk and Compliance (CGRC) certification by ISC² with free exam-style practice questions on CyberCertPrep. The CGRC exam has 125 questions, a time limit of 3 hours, and a passing score of 70%.
Choose from Practice mode, Exam Simulation, Weak Areas review, and Daily Challenge. Track your progress with detailed analytics and study with flashcards.
Certified in Governance, Risk and Compliance (CGRC) Exam Domain
Focus your study on this domain with targeted practice questions. This domain accounts for 13% of your CGRC exam score.
The Compliance Maintenance domain is one of 7 exam domains on the Certified in Governance, Risk and Compliance (CGRC) certification exam by ISC². At 13% of the total exam, this domain is important but should be balanced with higher-weighted domains in your study plan.
The CGRC exam consists of 125 questions with a time limit of 3 hours and a passing score of 70%. That means approximately 16 questions on your exam will come from the Compliance Maintenance domain.
Multi-Factor Authentication (MFA)
A security mechanism that requires two or more independent credentials to verify a user's identity, combining factors fr...
SIEM (Security Information and Event Management)
A software solution that aggregates and analyzes security data from across the organization, including logs from firewal...
Vulnerability Assessment
A systematic process to identify, quantify, and prioritize security vulnerabilities in systems, applications, and networ...
Compliance
The act of conforming to established guidelines, specifications, regulations, or legislation related to information secu...
Business Continuity Plan (BCP)
A plan that outlines procedures and instructions for maintaining essential business functions during and after a disaste...
CASB (Cloud Access Security Broker)
A security policy enforcement point placed between cloud service consumers and cloud service providers to monitor activi...
IAM (Identity and Access Management)
A framework of policies, processes, and technologies for managing digital identities and controlling user access to crit...
DevSecOps
An approach that integrates security practices within the DevOps process throughout the entire software development life...
These certifications also cover topics related to Compliance Maintenance:
Governance, Risk & Compliance, 20% of exam
Privacy Risk Management and Compliance, 18% of exam
Risk & Compliance for AI, 25% of exam
AI Compliance Frameworks, 35% of exam
Compliance, 30% of exam
LLM Security Governance & Compliance, 10% of exam