CAS-002 · Question #270
A Security Manager is part of a team selecting web conferencing systems for internal use. The system will only be used for internal employee collaboration. Which of the following are the MAIN…
The correct answer is A. Security of data storage C. System availability D. User authentication strategy. When evaluating internal web conferencing tools, a security manager's primary concerns center on protecting data, ensuring access control, and maintaining service availability.
Question
A Security Manager is part of a team selecting web conferencing systems for internal use. The system will only be used for internal employee collaboration. Which of the following are the MAIN concerns of the security manager? (Select THREE).
Options
- ASecurity of data storage
- BThe cost of the solution
- CSystem availability
- DUser authentication strategy
- EPBX integration of the service
- FOperating system compatibility
How the community answered
(41 responses)- A90% (37)
- B5% (2)
- E2% (1)
- F2% (1)
Why each option
When evaluating internal web conferencing tools, a security manager's primary concerns center on protecting data, ensuring access control, and maintaining service availability.
Security of data storage addresses how recorded sessions, shared files, and chat logs are protected at rest from unauthorized access or disclosure.
Cost is a procurement and financial concern, not a security concern, and falls outside the security manager's primary evaluation criteria.
System availability is a core security concern because downtime of an internal collaboration tool disrupts business operations and represents a denial-of-service risk vector.
User authentication strategy is critical to ensure only authorized employees can join internal sessions, preventing unauthorized information disclosure.
PBX integration is a telephony feature requirement, not a security concern for an internal-only web conferencing deployment.
Operating system compatibility is an IT operations and deployment concern, not a primary security requirement.
Concept tested: Security requirements evaluation for internal collaboration tools
Source: https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-53r5.pdf
Topics
Community Discussion
No community discussion yet for this question.