Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam SSCP All Questions

View all questions & answers for the SSCP exam

Exam SSCP topic 1 question 118 discussion

Actual exam question from ISC's SSCP
Question #: 118
Topic #: 1
[All SSCP Questions]

Which of the following statements pertaining to access control is false?

  • A. Users should only access data on a need-to-know basis.
  • B. If access is not explicitly denied, it should be implicitly allowed.
  • C. Access rights should be granted based on the level of trust a company has on a subject.
  • D. Roles can be an efficient way to assign rights to a type of user who performs certain tasks.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Access control mechanisms should default to no access to provide the necessary level of security and ensure that no security holes go unnoticed. If access is not explicitly allowed, it should be implicitly denied.
Source: HARRIS, Shon, All-In-One CISSP Certification Exam Guide, McGraw-Hill/Osborne, 2002, Chapter 4: Access Control (page 143).

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
mansour975
11 months, 2 weeks ago
Selected Answer: B
I think B is the correct as answered
upvoted 2 times
...
Rixster
1 year, 2 months ago
Selected Answer: C
Granting access solely based on trust can lead to security vulnerabilities if users with excessive access privileges are compromised or if their trustworthiness changes over time. Instead, access control decisions should be based on the specific roles, responsibilities, and tasks that individuals need to perform.
upvoted 1 times
swiggharo
10 months, 2 weeks ago
C is talking about the level of trust. Not trustworthiness. The level of trust can be based on factors such as their role, history, or level of responsibility.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...