nerdexam
(ISC)2

SSCP · Question #1125

Decentralized access control allows ______________________.

The correct answer is A. File owners to determine access rights. Decentralized access control empowers individual resource owners, such as file owners, to manage and determine access permissions for their own resources.

Submitted by jordan8· Apr 18, 2026Access Controls

Question

Decentralized access control allows ______________________.

Options

  • AFile owners to determine access rights
  • BHelp Desk personnel to determine access rights
  • CIT personnel to determine access rights
  • DSecurity Officers to determine access rights
  • ESecurity Officers to delegate authority to other users

How the community answered

(40 responses)
  • A
    90% (36)
  • C
    5% (2)
  • D
    3% (1)
  • E
    3% (1)

Why each option

Decentralized access control empowers individual resource owners, such as file owners, to manage and determine access permissions for their own resources.

AFile owners to determine access rightsCorrect

Decentralized access control, often associated with Discretionary Access Control (DAC) models, grants the owner of a resource (e.g., a file or folder) the ability to specify which other users or groups can access their resources and what type of access they have.

BHelp Desk personnel to determine access rights

Help Desk personnel typically follow predefined procedures for access requests, not determine access rights based on their discretion for all resources.

CIT personnel to determine access rights

IT personnel might implement access controls, but in a decentralized model, the *owner* makes the ultimate access decisions, not general IT staff.

DSecurity Officers to determine access rights

Security Officers typically oversee overall security policy and may define roles, but in a decentralized model, they do not determine specific access rights for every individual resource.

ESecurity Officers to delegate authority to other users

While Security Officers might delegate authority, "decentralized access control" specifically refers to resource owners having the direct ability to set permissions, rather than delegation of the *security officer's* authority.

Concept tested: Decentralized access control (DAC)

Source: https://learn.microsoft.com/en-us/windows/win32/secauthz/discretionary-access-control-lists

Topics

#Access Control Models#Decentralized Access Control#Resource Ownership#Access Rights

Community Discussion

No community discussion yet for this question.

Full SSCP Practice