CGRC Security Control Selection Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 15, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. Control selection should consider which of the following factors?

Submit
Please wait...
About This Quiz
Cgrc Security Control Selection Quiz - Quiz

This quiz evaluates your understanding of security control selection and implementation within the CGRC framework. Test your knowledge of control categories, risk assessment integration, and alignment with organizational objectives. Perfect for college-level cybersecurity professionals preparing for certification or deepening expertise in governance, risk, and compliance.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. Which stakeholder group should be involved in control selection decisions?

Submit

3. Control selection must account for the organization's ____ environment and constraints.

Submit

4. Which of the following best describes 'defense in depth' in control selection?

Submit

5. Control selection decisions should be documented to support which function?

Submit

6. What is the primary challenge in selecting compensating controls?

Submit

7. Security controls selected must align with organizational ____ and strategic objectives.

Submit

8. Which process ensures selected controls remain effective over time?

Submit

9. In the CGRC framework, control selection must support which governance objective?

Submit

10. A firewall is best classified as which type of control?

Submit

11. Which control type is designed to prevent a security incident from occurring?

Submit

12. Which control type modifies or repairs damage from a security incident?

Submit

13. What is the relationship between control effectiveness and organizational risk tolerance?

Submit

14. A control that identifies a security breach after it occurs is classified as ____.

Submit

15. Which step should occur before selecting specific security controls?

Submit

16. In control selection, what does 'residual risk' represent?

Submit

17. Detective controls are most effective when paired with which other control type?

Submit

18. Which framework provides guidance on control categories in the CGRC context?

Submit

19. What is the primary purpose of compensating controls?

Submit

20. Control selection should be aligned with which primary organizational factor?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Control selection should consider which of the following factors?
Which stakeholder group should be involved in control selection...
Control selection must account for the organization's ____ environment...
Which of the following best describes 'defense in depth' in control...
Control selection decisions should be documented to support which...
What is the primary challenge in selecting compensating controls?
Security controls selected must align with organizational ____ and...
Which process ensures selected controls remain effective over time?
In the CGRC framework, control selection must support which governance...
A firewall is best classified as which type of control?
Which control type is designed to prevent a security incident from...
Which control type modifies or repairs damage from a security...
What is the relationship between control effectiveness and...
A control that identifies a security breach after it occurs is...
Which step should occur before selecting specific security controls?
In control selection, what does 'residual risk' represent?
Detective controls are most effective when paired with which other...
Which framework provides guidance on control categories in the CGRC...
What is the primary purpose of compensating controls?
Control selection should be aligned with which primary organizational...
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!