ExamGecko
Question list
Search
Search

Question 477 - CISM discussion

Report
Export

Which of the following is the BEST approach for data owners to use when defining access privileges for users?

A.
Define access privileges based on user roles.
Answers
A.
Define access privileges based on user roles.
B.
Adopt user account settings recommended by the vendor.
Answers
B.
Adopt user account settings recommended by the vendor.
C.
Perform a risk assessment of the users' access privileges.
Answers
C.
Perform a risk assessment of the users' access privileges.
D.
Implement an identity and access management (IDM) tool.
Answers
D.
Implement an identity and access management (IDM) tool.
Suggested answer: A

Explanation:

This approach is the best because it ensures that users have the minimum level of access required to perform their job functions, which reduces the risk of unauthorized access or misuse of data. User roles are defined based on the business needs and responsibilities of the users, and they can be easily managed and audited.

answer : ''Defining access privileges based on user roles is the best approach because it allows the data owner to assign the minimum level of access required for each role and to review and update the roles periodically'' (p. 23).

asked 01/10/2024
André Batista
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first