CompTIA
CAS-001 · Question #41
CAS-001 Question #41: Real Exam Question with Answer & Explanation
Sign in or unlock CAS-001 to reveal the answer and full explanation for question #41. The question stem and answer options stay visible for context.
Question
The Chief Information Security Officer (CISO) is researching ways to reduce the risk associated with administrative access of six IT staff members while enforcing separation of duties. In the case where an IT staff member is absent, each staff member should be able to perform all the necessary duties of their IT co-workers. Which of the following policies should the CISO implement to reduce the risk?
Options
- ARequire the use of an unprivileged account, and a second shared account only for administrative
- BRequire role-based security on primary role, and only provide access to secondary roles on a
- CRequire separation of duties ensuring no single administrator has access to all systems.
- DRequire on-going auditing of administrative activities, and evaluate against risk-based metrics.
Unlock CAS-001 to see the answer
You've previewed enough free CAS-001 questions. Unlock CAS-001 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.