ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
A company discovers that many user accounts gradually accumulate access to additional file shares and applications as employees take on temporary projects, often retaining those rights long after the work ends. Which action best addresses this entitlement creep while aligning with identity management lifecycle practices?
Implement enterprise single sign-on (SSO) so users authenticate once to reach all authorized resources.
Encrypt sensitive resources with attribute-based encryption to ensure only authorized attributes can decrypt data.
Schedule periodic entitlement reviews that require managers to re-certify each user's permissions against current job responsibilities.
Enforce complex password policies and mandatory password changes every 60 days for all user accounts.
Entitlement creep occurs when subjects retain access rights that are no longer required. The most effective countermeasure is to perform scheduled access or entitlement reviews in which current privileges are compared against job duties and adjusted or revoked as needed. This keeps granted permissions aligned with legitimate business requirements. Stronger passwords, federation, or attribute-based encryption can improve other aspects of security but do not directly detect or remove outdated permissions that cause entitlement creep.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is entitlement creep?
Open an interactive chat with Bash
What is an entitlement review and how does it work?
Open an interactive chat with Bash
How does entitlement creep impact security?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Access Controls
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .