220-802 · Question #903
A server administrator, Anne, has set up a new server on the company's network to provide centralized user and access management. The file permissions on the server have been shared over the network…
The correct answer is D. Principle of least privilege. The Principle of Least Privilege (PoLP) is a security concept where users are granted only the minimum level of access rights necessary to perform their job functions - nothing more. In this scenario, Anne assigned permissions based on departmental user groups without granting…
Question
A server administrator, Anne, has set up a new server on the company's network to provide centralized user and access management. The file permissions on the server have been shared over the network based on user groups divided into departments and do not have administrative rights. This practice is called which of the following?
Options
- ALogical separation of data
- BUser segregation
- CAdministrative overhead
- DPrinciple of least privilege
How the community answered
(26 responses)- A8% (2)
- B4% (1)
- D88% (23)
Explanation
The Principle of Least Privilege (PoLP) is a security concept where users are granted only the minimum level of access rights necessary to perform their job functions - nothing more. In this scenario, Anne assigned permissions based on departmental user groups without granting administrative rights, ensuring users can only access what they need. This limits the potential damage from accidental misuse, insider threats, or compromised accounts. The other options are distractors: 'Logical separation of data' refers to isolating data using software boundaries; 'User segregation' is not a standard security term; 'Administrative overhead' describes the burden of managing IT systems, not a security practice.
Topics
Community Discussion
No community discussion yet for this question.