ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your team is refactoring an internal microservice that currently relies on each table owner manually granting access to individual user accounts. To convert the service to a true RBAC model, which architectural change must be introduced before deployment?
Label every database row with a security classification and enforce access decisions using a mandatory lattice.
Continue allowing each resource owner to grant and revoke access lists for their own objects at their discretion.
Create a set of job-focused roles, link permissions to those roles, and assign user accounts to the appropriate roles.
Add a default administrator role that all new users automatically inherit to avoid onboarding delays.
Role-Based Access Control (RBAC) centers on defining roles that encapsulate permissions and then linking user accounts to those roles. By decoupling user identities from specific permission sets, administration is simplified and the principle of least privilege is easier to enforce. Adding security labels to data and using lattice rules describes mandatory access control (MAC). Continuing to let each owner set access lists is discretionary access control (DAC). Granting every new user an administrator-level role is the opposite of RBAC's least-privilege philosophy and unnecessarily broadens access.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are the key differences between RBAC, DAC, and MAC?
Open an interactive chat with Bash
How does RBAC support the principle of least privilege?
Open an interactive chat with Bash
Why is a default administrator role not recommended in RBAC?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Implementation
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .