During a quarterly internal audit, the security manager discovers several employees who transferred between departments still possess permissions for systems they no longer use. To address the finding, the manager implements a formal, recurring account access review process across the enterprise, involving system owners and department heads. Which primary objective does this process BEST achieve?
Confirming that all user accounts remain active
Reducing the overall number of active accounts
Ensuring permissions align with each user's current role
Regular account access reviews focus on validating that each user's permissions remain aligned with their current job duties, enforcing the principle of least privilege. By comparing entitlements to present roles, reviewers can quickly revoke outdated or excessive rights and prevent unauthorized or escalated access. Simply confirming that accounts are active, reducing account counts, or meeting compliance requirements may be useful outcomes, but they are not the main purpose of the review itself.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
Why is aligning permissions with user roles important in account access reviews?
Open an interactive chat with Bash
How can an IT administrator identify discrepancies in user account permissions during a review?
Open an interactive chat with Bash
What external regulations require regular account access reviews?
Open an interactive chat with Bash
ISC2 CISSP
Identity and Access Management (IAM)
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .