Câu 27: CAS-005: CompTIA SecurityX
An organization wants to implement an access control system based on its data classification policy that includes the following data types:Confidential -Restricted -Internal -Public Flag for Review -The access control system should support SSO federation to map users into groups. Each group should only access systems…
Nội dung câu hỏi
An organization wants to implement an access control system based on its data classification policy that includes the following data types:Confidential -Restricted -Internal -Public Flag for Review -The access control system should support SSO federation to map users into groups. Each group should only access systems that process and store data at the classification assigned to the group. Which of the following should the organization implement to enforce its requirements with a minimal impact to systems and resources?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. A tagging strategy in which all resources are assigned a tag based on the data classification type, and a system that enforces attribute-based access control — đáp án hiện tại
- B. Role-based access control that maps data types to internal roles, which are defined in the human resources department's source of truth system
- C. Network microsegmentation based on data types, and a network access control system enforcing mandatory access control based on the user principal
- D. A rule-based access control strategy enforced by the SSO system with rules managed by the internal LDAP and applied on a per-system basis
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.