(ISC)2(ISC)2
CSSLP · Question #138
CSSLP Question #138: Real Exam Question with Answer & Explanation
The correct answer is A: It establishes the users' identity and ensures that the users are who they say they are.. Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.
Secure Software Concepts
Question
Which of the following statements about the authentication concept of information security management is true?
Options
- AIt establishes the users' identity and ensures that the users are who they say they are.
- BIt ensures the reliable and timely access to resources.
- CIt determines the actions and behaviors of a single individual within a system, and identifies that
- DIt ensures that modifications are not made to data by unauthorized personnel or processes.
Explanation
Authentication in information security is the process of verifying a user's identity to ensure they are legitimate.
Common mistakes.
- B. Ensuring reliable and timely access to resources describes availability, a different aspect of information security.
- C. Determining actions and behaviors of an individual within a system and identifying that is more related to accountability or audit trails, not authentication itself.
- D. Ensuring data modifications are not made by unauthorized personnel describes integrity, another core security principle.
Concept tested. Authentication in information security
Reference. https://csrc.nist.gov/glossary/term/authentication
Topics
#Authentication#Identity Verification#Information Security Principles
Community Discussion
No community discussion yet for this question.