nerdexam
CompTIA

CAS-003 · Question #304

A systems administrator recently joined an organization and has been asked to perform a security assessment of controls on the organization's file servers, which contain client data from a number of…

The correct answer is A. Access control list F. Data access policies. SRTM is just a matrix of the controls being implemented,and to track progress. A) Access Control lists will show who has access to the file servers, etc…; F) Data Access Policies (access implemented) show how to access the file servers, etc..

Enterprise Security Operations

Question

A systems administrator recently joined an organization and has been asked to perform a security assessment of controls on the organization's file servers, which contain client data from a number of sensitive systems. The administrator needs to compare documented access requirements to the access implemented within the file system. Which of the following is MOST likely to be reviewed during the assessment? (Select two.)

Options

  • AAccess control list
  • BSecurity requirements traceability matrix
  • CData owner matrix
  • DRoles matrix
  • EData design document
  • FData access policies

How the community answered

(16 responses)
  • A
    81% (13)
  • B
    13% (2)
  • D
    6% (1)

Explanation

SRTM is just a matrix of the controls being implemented,and to track progress. A) Access Control lists will show who has access to the file servers, etc…; F) Data Access Policies (access implemented) show how to access the file servers, etc..

Topics

#access control lists#data access policies#file system permissions#security assessment

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice