nerdexam
Isaca

CCAK · Question #36

A large organization with subsidiaries in multiple locations has a business requirement to organize IT systems to have identified resources reside in particular locations with organizational…

The correct answer is A. Role Based Access Control. Role-Based Access Control (RBAC) is ideal for large organizations with multiple subsidiaries and locations because it allows IT administrators to define roles aligned to organizational structure. Personnel in each location or subsidiary are assigned roles corresponding to their…

Cloud Governance

Question

A large organization with subsidiaries in multiple locations has a business requirement to organize IT systems to have identified resources reside in particular locations with organizational personnel. Which access control method will allow IT personnel to be segregated across the various locations?

Options

  • ARole Based Access Control
  • BAttribute Based Access Control
  • CPolicy Based Access Control
  • DRule Based Access Control

How the community answered

(51 responses)
  • A
    88% (45)
  • B
    2% (1)
  • C
    6% (3)
  • D
    4% (2)

Explanation

Role-Based Access Control (RBAC) is ideal for large organizations with multiple subsidiaries and locations because it allows IT administrators to define roles aligned to organizational structure. Personnel in each location or subsidiary are assigned roles corresponding to their job functions and responsibilities within that organizational unit, ensuring that access to resources is scoped appropriately to each location. RBAC maps directly to org charts and hierarchies, making it the standard method for personnel segregation across geographically or organizationally distinct units within the same enterprise.

Topics

#Access Control#Role Based Access Control (RBAC)#Personnel Segregation#Organizational Access Management

Community Discussion

No community discussion yet for this question.

Full CCAK Practice