nerdexam
EC-Council

512-50 · Question #308

SCENARIO: A CISO has several two-factor authentication systems under review and selects the one that is most sufficient and least costly. The implementation project planning is completed and the…

The correct answer is D. A risk-based approach to determine if the solution is suitable for investment. See the full explanation below for the reasoning.

Question

SCENARIO: A CISO has several two-factor authentication systems under review and selects the one that is most sufficient and least costly. The implementation project planning is completed and the teams are ready to implement the solution. The CISO then discovers that the product it is not as scalable as originally thought and will not fit the organization's needs. The CISO is unsure of the information provided and orders a vendor proof of concept to validate the system's scalability. This demonstrates which of the following?

Options

  • AAn approach that allows for minimum budget impact if the solution is unsuitable
  • BA methodology-based approach to ensure authentication mechanism functions
  • CAn approach providing minimum time impact to the implementation schedules
  • DA risk-based approach to determine if the solution is suitable for investment

How the community answered

(31 responses)
  • B
    6% (2)
  • C
    13% (4)
  • D
    81% (25)

Community Discussion

No community discussion yet for this question.

Full 512-50 Practice