CCCS-203B · Question #277
You are reviewing accounts using the CrowdStrike CIEM/Identity Analyzer and need to ensure MFA compliance. Which account configuration demonstrates proper MFA implementation?
The correct answer is B. An account that uses password authentication and an authenticator app for a one-time password. Option A: The inactivity period and absence of additional authentication factors disqualify this account from demonstrating proper MFA implementation. This account would likely need further review for security compliance. Option B: This setup meets the definition of MFA…
Question
You are reviewing accounts using the CrowdStrike CIEM/Identity Analyzer and need to ensure MFA compliance. Which account configuration demonstrates proper MFA implementation?
Options
- AAn account with no login activity in the last 30 days and no additional authentication factors.
- BAn account that uses password authentication and an authenticator app for a one-time password
- CAn account configured with biometric authentication only.
- DAn account that allows users to bypass additional authentication steps on trusted devices.
How the community answered
(39 responses)- A5% (2)
- B79% (31)
- C13% (5)
- D3% (1)
Explanation
Option A: The inactivity period and absence of additional authentication factors disqualify this account from demonstrating proper MFA implementation. This account would likely need further review for security compliance. Option B: This setup meets the definition of MFA, combining two factors: "something you know" (password) and "something you have" (authenticator app). This ensures robust security against unauthorized access. Option C: While biometric authentication ("something you are") is a strong factor, MFA requires combining at least two different factors. Biometric authentication alone does not meet this Option D: Allowing bypass of additional steps compromises the integrity of MFA and introduces vulnerabilities. Proper MFA should always require multiple factors, even on trusted devices.
Topics
Community Discussion
No community discussion yet for this question.