nerdexam
CompTIA

220-1101 · Question #674

Following a security breach that revealed employee username and password information, an organization would like to implement additional security for users logging in to company devices. Which of the

The correct answer is A. Biometric authentication. To enhance security after a password breach, biometric authentication is the best solution for adding an extra layer of verification for user logins. This method uses unique physical characteristics, making it difficult for unauthorized users to gain access even with stolen crede

Hardware

Question

Following a security breach that revealed employee username and password information, an organization would like to implement additional security for users logging in to company devices. Which of the following would be the best solution for the organization to use?

Options

  • ABiometric authentication
  • BPeer-reviewed log-ins
  • CLog-in scripts
  • DOne-time tokens

How the community answered

(43 responses)
  • A
    72% (31)
  • B
    16% (7)
  • C
    7% (3)
  • D
    5% (2)

Why each option

To enhance security after a password breach, biometric authentication is the best solution for adding an extra layer of verification for user logins. This method uses unique physical characteristics, making it difficult for unauthorized users to gain access even with stolen credentials.

ABiometric authenticationCorrect

Biometric authentication, such as fingerprint or facial recognition, provides an additional strong factor of authentication beyond usernames and passwords, significantly increasing security by verifying a user's physical identity. It prevents unauthorized access even if passwords are compromised, as the biometric data is unique to the legitimate user.

BPeer-reviewed log-ins

Peer-reviewed log-ins are not a standard or effective security measure to prevent unauthorized access following a password breach; they would introduce unnecessary overhead without directly verifying user identity.

CLog-in scripts

Log-in scripts automate tasks during login but do not provide an additional authentication factor to enhance security against compromised credentials.

DOne-time tokens

While one-time tokens can enhance security as a form of multi-factor authentication, biometrics offer a similarly strong and often more seamless physical method for additional device login security.

Concept tested: Multi-factor authentication, Biometric security implementation

Source: https://learn.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/identity-protection-overview

Topics

#Authentication#Biometric authentication#Security hardening#Multi-factor authentication

Community Discussion

No community discussion yet for this question.

Full 220-1101 Practice