nerdexam
(ISC)2(ISC)2

CISSP · Question #152

CISSP Question #152: Real Exam Question with Answer & Explanation

Sign in or unlock CISSP to reveal the answer and full explanation for question #152. The question stem and answer options stay visible for context.

Submitted by thandi_sa· Mar 5, 2026Security and Risk Management

Question

Refer to the information below to answer the question. A large organization uses unique identifiers and requires them at the start of every system session. Application access is based on job classification. The organization is subject to periodic independent reviews of access controls and violations. The organization uses wired and wireless networks and remote access. The organization also uses secure connections to branch offices and secure backup and recovery strategies for selected information and processes. Following best practice, where should the permitted access for each department and job classification combination be specified?

Options

  • ASecurity procedures
  • BSecurity standards
  • CHuman resource policy
  • DHuman resource standards

Unlock CISSP to see the answer

You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#security standards#access control documentation#security policies#information security governance
Full CISSP PracticeBrowse All CISSP Questions