ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 578 - SY0-601 discussion

Report
Export

A routine audit of medical billing claims revealed that several claims were submitted without the subscriber's knowledge A review of the audit logs for the medical billing company's system indicated a company employee downloaded customer records and adjusted the direct deposit information to a personal bank account Which of the following does this action describe?

A.
Insider threat
Answers
A.
Insider threat
B.
Social engineering
Answers
B.
Social engineering
C.
Third-party risk
Answers
C.
Third-party risk
D.
Data breach
Answers
D.
Data breach
Suggested answer: A

Explanation:

An insider threat is a threat to an organization that comes from negligent or malicious insiders, such as employees, former employees, contractors, third-party vendors, or business partners, who have inside information about cybersecurity practices, sensitive data, and computer systems. The action described in the question is an example of a malicious insider threat, where an employee intentionally misused their authorized access to harm the organization by stealing customer records and diverting funds to their personal bank account. Reference: What Is an Insider Threat? Definition, Types, and Prevention - Fortinet; What are insider threats? | IBM; What Is an Insider Threat?

Definition, Examples, and Mitigations; Insider Threat Mitigation | Cybersecurity and Infrastructure …

- CISA

asked 02/10/2024
William Takashi Chan
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first