GSLC · Question #483
Which of the following methods can be helpful to eliminate social engineering threat? Each correct answer represents a complete solution. Choose three.
The correct answer is A. Password policies B. Data classification C. Vulnerability assessments. Password policies, data classification, and vulnerability assessments each reduce the effectiveness of social engineering attacks by hardening credentials, raising data sensitivity awareness, and identifying exploitable weaknesses.
Question
Which of the following methods can be helpful to eliminate social engineering threat? Each correct answer represents a complete solution. Choose three.
Options
- APassword policies
- BData classification
- CVulnerability assessments
- DData encryption
How the community answered
(68 responses)- A93% (63)
- D7% (5)
Why each option
Password policies, data classification, and vulnerability assessments each reduce the effectiveness of social engineering attacks by hardening credentials, raising data sensitivity awareness, and identifying exploitable weaknesses.
Password policies enforce strong, complex, and regularly rotated credentials, directly reducing the chance that social engineering attacks such as phishing or pretexting will yield usable passwords.
Data classification trains employees to recognize which information is sensitive and must not be disclosed, reducing the likelihood that a social engineer can manipulate staff into revealing confidential data.
Vulnerability assessments identify gaps in technical and procedural controls that social engineers could exploit, enabling the organization to remediate those weaknesses before attackers can leverage them.
Data encryption protects data confidentiality during storage and transit but does not prevent a person from being deceived or manipulated into voluntarily disclosing information to a social engineer.
Concept tested: Social engineering countermeasures and prevention controls
Topics
Community Discussion
No community discussion yet for this question.