ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 62 - PT0-002 discussion

Report
Export

A penetration tester discovers during a recent test that an employee in the accounting department has been making changes to a payment system and redirecting money into a personal bank account.

The penetration test was immediately stopped. Which of the following would be the BEST recommendation to prevent this type of activity in the future?

A.
Enforce mandatory employee vacations
Answers
A.
Enforce mandatory employee vacations
B.
Implement multifactor authentication
Answers
B.
Implement multifactor authentication
C.
Install video surveillance equipment in the office
Answers
C.
Install video surveillance equipment in the office
D.
Encrypt passwords for bank account information
Answers
D.
Encrypt passwords for bank account information
Suggested answer: A

Explanation:

If the employee already works in the accounting department, MFA will not stop their actions because they'll already have access by virtue of their job.

Enforcing mandatory employee vacations is the best recommendation to prevent this type of activity in the future, as it will make it harder for an employee to conceal fraudulent transactions or unauthorized changes to a payment system. Mandatory employee vacations are a form of internal control that requires employees to take time off from work periodically and have their duties performed by someone else. This can help detect errors, irregularities, or frauds committed by employees who might otherwise have exclusive access or control over certain processes or systems.

asked 02/10/2024
Nour Algharbi
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first