A company merges two business units and discovers that multiple teams share overlapping tasks with no clear accountability for security measures. Which approach best resolves these issues and safeguards against unforeseen threats?
Suspend all new access until the teams finalize their processes
Reconfigure the network firewall with a fresh set of access rules
Develop a matrix that assigns specific responsibilities to each role
Encourage each business unit to create security guidelines on its own
Using a matrix that designates who is responsible and accountable for each security measure organizes tasks and prevents gaps. Updating only the perimeter defenses does not address the underlying confusion over duties. Granting each unit total independence creates further inconsistency. Removing every new user’s privileges is disruptive and does not clarify who owns certain tasks. Consistently defining roles and responsibilities promotes a cohesive security strategy.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a responsibility and accountability matrix?
Open an interactive chat with Bash
Why is it dangerous to have overlapping tasks without clear accountability in security?
Open an interactive chat with Bash
Why is relying on perimeter defenses like firewalls not sufficient for resolving security accountability issues?