nerdexam
GIAC

GSEC · Question #355

GSEC Question #355: Real Exam Question with Answer & Explanation

The correct answer is A. It ensures reliable and timely access to resources.. The availability pillar of the CIA triad guarantees that authorized users can reliably and timely access systems and data when needed. It is distinct from confidentiality and integrity.

Question

Which of the following statements about the availability concept of Information security management is true?

Options

  • AIt ensures reliable and timely access to resources.
  • BIt determines actions and behaviors of a single individual within a system.
  • CIt ensures that unauthorized modifications are not made to data by authorized personnel or
  • DIt ensures that modifications are not made to data by unauthorized personnel or processes.

Explanation

The availability pillar of the CIA triad guarantees that authorized users can reliably and timely access systems and data when needed. It is distinct from confidentiality and integrity.

Common mistakes.

  • B. Tracking or determining the actions and behaviors of an individual within a system describes accountability or non-repudiation, not availability.
  • C. Preventing unauthorized modifications by authorized personnel describes a nuanced aspect of integrity controls such as least privilege, not availability.
  • D. Ensuring data is not modified by unauthorized personnel or processes is the definition of integrity, not availability.

Concept tested. CIA triad - availability definition in information security

Reference. https://csrc.nist.gov/glossary/term/availability

Community Discussion

No community discussion yet for this question.

Full GSEC Practice