A security audit recently revealed that an administrator is using the same password of C1$c0448845217 for his personal account across multiple systems. What must be implemented by the company to reduce the chances of this happening again?
To reduce the chances of an administrator using the same password across multiple systems, the company should implement strict password policies. These policies can enforce rules such as minimum password complexity, uniqueness, regular password changes, and prohibiting the reuse of previous passwords. Implementing such policies helps ensure that users create strong, unique passwords for different accounts, thereby enhancing overall security.
I would opt for C.
The question states "for his <<personal>> account"
No matter what password policies you have, those won't do anything for his personal accounts. So, I would assume, the "admin" would not be aware of the dangers and as such, he needs more training, lol.
If you implement a stricter password policy, like minimum password complexity, uniqueness, regular password changes, and prohibiting the reuse of previous passwords then they will not be able to have the same password on multiple systems, being them of professional or personal use.
Would have to agree with Brain_Power as the best possible answer here is Option D.
Implementing strong password policies should be the FIRST LINE OF DEFENSE against a scenario like this occurring.
According to DigiCert: “ A strong password isn’t just about ONE password, it’s important that you guarantee strong passwords for EACH ACCOUNT that you access through your computer. When you are utilizing a corporate network, the network administrator may encourage you to use a strong password.”
Option C isn’t entirely wrong either though – this is also another crucial step in terms of spreading awareness and making known best practices…..but, I see it as a complimentary or supplemental step IN ADDITION TO utilizing strong password policies, and not necessarily as your first step to take.
Source: Creating Strong Password Policy Best Practices | DigiCert.com
Your suggested answer would simplify user management and potentially enforce password policies, but it would NOT address the root issue of password reuse - which is the objective of this question.
C correct - security awareness training - only possible.
A - centalized dont prevent the use of same password
B - Role base did not prevent passwords , just a authorization method
D - strict Password policies did not prevent same password across multiples platform, just in one
D. strict password policies
"Implementing strong password policies is essentail to prevent administrators from reusing the same passwords for multiple accounts." - Cisco Secure Access Principles
"When audits reveal that administrators are using the same passwords across systems, the company should immediately mandate and enforce strict new password policies" - Cisco Identity Services Engine Deployment Guide
"If security reviews found that administrators are repeating passwords for accounts, the highest priority should beto require complex, unique passwords per policy." - Cisco TrustSec and Identity Services
I have not been able to find a single source for any of the three claimed statements. Everything looks like AI-generated answers that interpret the documents according to Brain_Power's intentions/questions.
Centralized user authentication will still give the user access to all his application through the use of same login credentials. So C is the only good option from the list
upvoted 2 times
...
...
This section is not available anymore. Please use the main Exam Page.350-701 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
ITVI
1 week, 6 days agoITVI
1 week, 1 day agoBasuso
5 months, 1 week agoBubu3k
8 months, 3 weeks agoBasuso
5 months, 1 week agoBubu3k
8 months, 3 weeks agoTthurston1
10 months, 2 weeks agoTthurston1
10 months, 2 weeks agoRododendron2
10 months, 3 weeks agoTthurston1
9 months, 3 weeks agoXvidalX
1 year, 1 month agoums008
1 year, 9 months agojku2cya
1 year, 9 months agoBrain_Power
1 year, 10 months agoMPoels
1 year, 1 month agocyberwhizzy0
1 year, 9 months agounclemonkeyboy
1 year, 10 months agocyberwhizzy0
1 year, 10 months ago