During a routine security audit, an organization discovers that several employees have access to sensitive financial data systems even though their roles do not require it. Which of the following practices should the organization implement to enhance control over logical access?
Implement role-based access control (RBAC) to align access permissions with job responsibilities.
Implement a temporary access pass system that requires regular renewals without specific role-based restrictions.
Allow department heads to grant access to their teams based on assessed needs.
Apply a standardized access control approach, assigning similar access rights to employees across different roles.
Implementing role-based access control (RBAC) helps align access permissions with job responsibilities, ensuring that only authorized personnel can access sensitive data necessary for their position. This minimizes the risk of unauthorized access that may arise from misallocation of access rights, which can happen with more lenient approaches like departmental discretion or standardized access rights.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Role-Based Access Control (RBAC)?
Open an interactive chat with Bash
How does RBAC improve security compared to other access control methods?
Open an interactive chat with Bash
What risks arise from granting access without proper controls like RBAC?
Open an interactive chat with Bash
ISC2 CISSP
Identity and Access Management (IAM)
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .