nerdexam
CompTIA

SK0-005 · Question #24

Which of the following would be BEST to help protect an organization against social engineering?

The correct answer is B. Recurring training and support. Social engineering exploits human psychology-not technical vulnerabilities-to trick users into revealing credentials or granting unauthorized access. Because the attack vector is people, the most effective countermeasure is ongoing security awareness training. Recurring…

Security and disaster recovery

Question

Which of the following would be BEST to help protect an organization against social engineering?

Options

  • AMore complex passwords
  • BRecurring training and support
  • CSingle sign-on
  • DAn updated code of conduct to enforce social media

How the community answered

(37 responses)
  • B
    92% (34)
  • C
    3% (1)
  • D
    5% (2)

Explanation

Social engineering exploits human psychology-not technical vulnerabilities-to trick users into revealing credentials or granting unauthorized access. Because the attack vector is people, the most effective countermeasure is ongoing security awareness training. Recurring training keeps users updated on new attack techniques (phishing, pretexting, vishing) and reinforces safe behaviors. More complex passwords (A) do not help if a user is deceived into handing them over. Single sign-on (C) is an authentication convenience tool, not a social-engineering defense. An updated code of conduct (D) is a policy measure with limited effectiveness without the education to back it up.

Topics

#Social engineering#Security awareness training#Human factor in security#Cybersecurity defense

Community Discussion

No community discussion yet for this question.

Full SK0-005 Practice