nerdexam
CompTIA

CAS-003 · Question #788

A security is assisting the marketing department with ensuring the security of the organization's social media platforms. The two main concerns are: The Chief marketing officer (CMO) email is being…

The correct answer is A. Configure MFA for all users to decrease their reliance on other authentication. Multi-Factor Authentication (MFA) is the correct recommendation. The two core problems are shared credentials (username and password). MFA adds an additional authentication factor - typically a time-based one-time password (TOTP) or push notification - that cannot be shared as…

Enterprise Security Operations

Question

A security is assisting the marketing department with ensuring the security of the organization's social media platforms. The two main concerns are:

The Chief marketing officer (CMO) email is being used department wide as the username The password has been shared within the department Which of the following controls would be BEST for the analyst to recommend?

Options

  • AConfigure MFA for all users to decrease their reliance on other authentication.
  • BHave periodic, scheduled reviews to determine which OAuth configuration are set for each
  • CCreate multiple social media accounts for all marketing user to separate their actions.
  • DEnsue the password being shared is sufficiently and not written down anywhere.

How the community answered

(46 responses)
  • A
    87% (40)
  • B
    2% (1)
  • C
    9% (4)
  • D
    2% (1)

Explanation

Multi-Factor Authentication (MFA) is the correct recommendation. The two core problems are shared credentials (username and password). MFA adds an additional authentication factor - typically a time-based one-time password (TOTP) or push notification - that cannot be shared as easily as a static password. Even if the CMO's email and password are known to multiple department members, the MFA factor tied to a specific device significantly limits unauthorized access. Option B (OAuth review) is a useful periodic hygiene task but does not directly address the shared credential problem. Option C (create multiple accounts) is ideal from a least-privilege perspective but may not be feasible on all social media platforms and doesn't immediately resolve the risk. Option D (ensure the password is strong and not written down) is insufficient - strong shared passwords are still a shared credential risk. MFA is the most impactful immediate control.

Topics

#MFA#shared credentials#social media security#authentication controls

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice