Compliance & GRC Quiz

Governance, risk, and compliance — frameworks, audits, and the regulatory side of running IT responsibly.

This category currently has 100 questions in the SERVBG quiz bank. Below are a few sample questions — the full interactive quiz shuffles through the whole set with instant scoring.

Sample questions

In ISO/IEC 27001:2022, how many controls are listed in Annex A?
Which document in an ISO 27001 ISMS explicitly records which Annex A controls are applicable and justifies exclusions?
Under ISO 27001:2022, which of the following is a NEW control theme that did NOT exist as a separate theme in the 2013 edition?
ISO 27001 requires internal audits to be conducted at what minimum frequency?
During ISMS scope definition, an organisation excludes its data centre operations. Which statement is correct?
Start the full quiz ›

Related categories

Python (Coding)
Python syntax, standard-library usage, and the language idioms that come up in day-to-day scripting and application work.
187 questions
JavaScript (Coding)
Core JavaScript language behavior, async patterns, and the quirks that trip up both beginners and experienced developers.
186 questions
Linux
Linux command-line usage, file permissions, process management, and the everyday admin tasks every sysadmin and developer needs.
150 questions
Security
General information security concepts — threats, defenses, and the fundamentals every IT professional should know.
148 questions
Hardware
Computer hardware components, how they interact, and the troubleshooting knowledge behind keeping systems running.
145 questions