SK0-005 · Question #24
Which of the following would be BEST to help protect an organization against social engineering?
The correct answer is B. Recurring training and support. Social engineering exploits human psychology-not technical vulnerabilities-to trick users into revealing credentials or granting unauthorized access. Because the attack vector is people, the most effective countermeasure is ongoing security awareness training. Recurring…
Question
Which of the following would be BEST to help protect an organization against social engineering?
Options
- AMore complex passwords
- BRecurring training and support
- CSingle sign-on
- DAn updated code of conduct to enforce social media
How the community answered
(37 responses)- B92% (34)
- C3% (1)
- D5% (2)
Explanation
Social engineering exploits human psychology-not technical vulnerabilities-to trick users into revealing credentials or granting unauthorized access. Because the attack vector is people, the most effective countermeasure is ongoing security awareness training. Recurring training keeps users updated on new attack techniques (phishing, pretexting, vishing) and reinforces safe behaviors. More complex passwords (A) do not help if a user is deceived into handing them over. Single sign-on (C) is an authentication convenience tool, not a social-engineering defense. An updated code of conduct (D) is a policy measure with limited effectiveness without the education to back it up.
Topics
Community Discussion
No community discussion yet for this question.