ExamGecko
Question list
Search
Search

Question 509 - CISM discussion

Report
Export

Within the confidentiality, integrity, and availability (CIA) triad, which of the following activities BEST supports the concept of confidentiality?

A.
Ensuring hashing of administrator credentials
Answers
A.
Ensuring hashing of administrator credentials
B.
Enforcing service level agreements (SLAs)
Answers
B.
Enforcing service level agreements (SLAs)
C.
Ensuring encryption for data in transit
Answers
C.
Ensuring encryption for data in transit
D.
Utilizing a formal change management process
Answers
D.
Utilizing a formal change management process
Suggested answer: C

Explanation:

Ensuring encryption for data in transit is the best activity that supports the concept of confidentiality within the CIA triad, as it protects the data from unauthorized access or interception while it is being transmitted over a network. Encryption is a technique that transforms data into an unreadable form using a secret key, so that only authorized parties who have the key can decrypt and access the data. Encryption standards include AES (Advanced Encryption Standard) and DES (Data Encryption Standard).

Reference= CISM Review Manual 2022, page 321; CISM Exam Content Outline, Domain 1, Knowledge Statement 1.12; The CIA triad: Definition, components and examples3; CIA Triad - GeeksforGeeks4

asked 01/10/2024
Chakravarthy Sankaranarayanan
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first