nerdexam
Isaca

CISM · Question #30

Meeting which of the following security objectives BEST ensures that information is protected against unauthorized disclosure?

The correct answer is A. Confidentiality. Confidentiality is the security objective that specifically ensures information is protected against unauthorized disclosure, meaning only authorized individuals or systems can access it.

Submitted by alyssa_d· Apr 18, 2026Information Security Governance

Question

Meeting which of the following security objectives BEST ensures that information is protected against unauthorized disclosure?

Options

  • AConfidentiality
  • BIntegrity
  • CAuthenticity
  • DNonrepudiation

How the community answered

(18 responses)
  • A
    89% (16)
  • B
    6% (1)
  • C
    6% (1)

Why each option

Confidentiality is the security objective that specifically ensures information is protected against unauthorized disclosure, meaning only authorized individuals or systems can access it.

AConfidentialityCorrect

Confidentiality is the core security objective that ensures information is protected from unauthorized access, disclosure, or viewing, meaning only authorized entities can read or otherwise access sensitive data. This is fundamental to preventing information leakage and maintaining privacy.

BIntegrity

Integrity ensures information is protected from unauthorized modification or destruction, not disclosure.

CAuthenticity

Authenticity ensures that the identity of a user, process, or system is confirmed, not directly preventing information disclosure.

DNonrepudiation

Nonrepudiation ensures that a party cannot deny having performed an action, which relates to accountability, not preventing unauthorized disclosure.

Concept tested: CIA triad (Confidentiality)

Source: https://learn.microsoft.com/en-us/microsoft-365/compliance/overview-of-data-loss-prevention?view=o365-worldwide

Topics

#Confidentiality#Information Security Objectives#Data Protection

Community Discussion

No community discussion yet for this question.

Full CISM Practice