ISC2 Certified in Cybersecurity (CC) Practice Question
An organization is configuring user permissions for a new customer-relationship management (CRM) database that contains sensitive client information. To comply with the Principle of Least Privilege, which access decision is most appropriate?
Allow contractors unrestricted access during business hours but disable their accounts after hours
Provide all sales employees full administrative rights so they can customize database schemas
Permit a marketing analyst read-only access to the specific campaign tables they must review
Enable temporary staff to share a generic account with edit rights across the entire database
The Principle of Least Privilege states that each user should receive only the permissions strictly required to perform assigned duties-no more, no less. Granting a marketing analyst read-only access to just the campaign tables limits both scope and capability to what the role genuinely needs, reducing the potential impact of accidental changes or account compromise. Full administrator rights for all users, unrestricted contractor access, or a shared edit-capable account each violate least-privilege by providing broader or shared permissions that are unnecessary and risky.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Principle of Least Privilege?
Open an interactive chat with Bash
Why is read-only access safer in this scenario?
Open an interactive chat with Bash
What are risks of shared or unrestricted account access?
Open an interactive chat with Bash
ISC2 Certified in Cybersecurity (CC)
Access Control Concepts
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .