SSCP · Question #129
Which of the following Operation Security controls is intended to prevent unauthorized intruders from internally or externally accessing the system, and to lower the amount and impact of unintentional
The correct answer is B. Preventative Controls. Preventative Controls are designed to stop security incidents before they occur - blocking unauthorized access (internal or external) and reducing unintentional errors from entering the system in the first place, which matches the question's description exactly. Detective Control
Question
Options
- ADetective Controls
- BPreventative Controls
- CCorrective Controls
- DDirective Controls
How the community answered
(61 responses)- A2% (1)
- B87% (53)
- C3% (2)
- D8% (5)
Explanation
Preventative Controls are designed to stop security incidents before they occur - blocking unauthorized access (internal or external) and reducing unintentional errors from entering the system in the first place, which matches the question's description exactly.
Detective Controls (A) are wrong because they identify and alert on incidents after they have already occurred, not before. Corrective Controls (C) are wrong because they restore systems or mitigate damage after a problem is detected - they react, not prevent. Directive Controls (D) are wrong because they guide behavior through policies and procedures (e.g., security policies, training), but don't technically enforce or block anything by themselves.
Memory tip: Think of the word "prevent" - Preventative Controls are your fence before the fall. If the control's job is to stop something from happening, it's Preventative. Detective = find it, Corrective = fix it, Directive = tell people what to do.
Topics
Community Discussion
No community discussion yet for this question.