ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 27 - CV0-004 discussion

Report
Export

A customer is migrating applications to the cloud and wants to grant authorization based on the classification levels of each system. Which of the following should the customer implement to ensure authorisation to systems is granted when the user and system classification properties match? (Select two).

A.
Resource tagging
Answers
A.
Resource tagging
B.
Discretionary access control
Answers
B.
Discretionary access control
C.
Multifactor authentication
Answers
C.
Multifactor authentication
D.
Role-based access control
Answers
D.
Role-based access control
E.
Token-based authentication
Answers
E.
Token-based authentication
F.
Bastion host
Answers
F.
Bastion host
Suggested answer: B, D

Explanation:

Discretionary Access Control (DAC) and Role-Based Access Control (RBAC) are effective methods for granting authorization based on system classification levels. DAC allows resource owners to grant access rights, making it flexible for environments with varying classification levels. RBAC assigns permissions based on roles within an organization, aligning access rights with the user's job functions and ensuring that users access only what is necessary for their role, which can be mapped to system classifications.

Reference: CompTIA Cloud+ content covers various access control models, emphasizing the importance of implementing appropriate security measures that align with organizational policies and classification levels to ensure secure and authorized access to cloud systems.

asked 02/10/2024
Kina Collins
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first