nerdexam
(ISC)2(ISC)2

CSSLP · Question #138

CSSLP Question #138: Real Exam Question with Answer & Explanation

The correct answer is A: It establishes the users' identity and ensures that the users are who they say they are.. Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.

Secure Software Concepts

Question

Which of the following statements about the authentication concept of information security management is true?

Options

  • AIt establishes the users' identity and ensures that the users are who they say they are.
  • BIt ensures the reliable and timely access to resources.
  • CIt determines the actions and behaviors of a single individual within a system, and identifies that
  • DIt ensures that modifications are not made to data by unauthorized personnel or processes.

Explanation

Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.

Common mistakes.

  • B. Ensuring reliable and timely access to resources describes availability, a different aspect of information security.
  • C. Determining actions and behaviors of an individual within a system and identifying that is more related to accountability or audit trails, not authentication itself.
  • D. Ensuring data modifications are not made by unauthorized personnel describes integrity, another core security principle.

Concept tested. Authentication in information security

Reference. https://csrc.nist.gov/glossary/term/authentication

Topics

#Authentication#Identity Verification#Information Security Principles

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions