ExamGecko
Question list
Search
Search

Related questions











Question 306 - CISA discussion

Report
Export

An IS auditor is reviewing an organization's primary router access control list. Which of the following should result in a finding?

A.
There are conflicting permit and deny rules for the IT group.
Answers
A.
There are conflicting permit and deny rules for the IT group.
B.
The network security group can change network address translation (NAT).
Answers
B.
The network security group can change network address translation (NAT).
C.
Individual permissions are overriding group permissions.
Answers
C.
Individual permissions are overriding group permissions.
D.
There is only one rule per group with access privileges.
Answers
D.
There is only one rule per group with access privileges.
Suggested answer: C

Explanation:

This should result in a finding because it violates the best practice of setting rules for groups rather than users.According to one of the web search results1, using group permissions instead of individual permissions can simplify the management and maintenance of ACLs, reduce the risk of human errors, and ensure consistency and compliance. Individual permissions can create conflicts, confusion, and security gaps in the ACLs. Therefore, the IS auditor should report this as a finding and recommend using group permissions instead.

asked 18/09/2024
Miguel Tuimil Galdo
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first