CSSLP · Question #138
Which of the following statements about the authentication concept of information security management is true?
The correct answer is A. It establishes the users' identity and ensures that the users are who they say they are. Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.
Question
Which of the following statements about the authentication concept of information security management is true?
Options
- AIt establishes the users' identity and ensures that the users are who they say they are.
- BIt ensures the reliable and timely access to resources.
- CIt determines the actions and behaviors of a single individual within a system, and identifies that
- DIt ensures that modifications are not made to data by unauthorized personnel or processes.
How the community answered
(31 responses)- A94% (29)
- C3% (1)
- D3% (1)
Why each option
Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.
Authentication primarily focuses on verifying the identity of a user or entity. This process establishes that the user attempting to access a system or resource is indeed who they claim to be, often through credentials like passwords, biometrics, or tokens.
Ensuring reliable and timely access to resources describes availability, a different aspect of information security.
Determining actions and behaviors of an individual within a system and identifying that is more related to accountability or audit trails, not authentication itself.
Ensuring data modifications are not made by unauthorized personnel describes integrity, another core security principle.
Concept tested: Authentication in information security
Source: https://csrc.nist.gov/glossary/term/authentication
Topics
Community Discussion
No community discussion yet for this question.