nerdexam
CompTIA

SY0-301 · Question #234

A security administrator notices that a specific network administrator is making unauthorized changes to the firewall every Saturday morning. Which of the following would be used to mitigate this…

The correct answer is C. Least privilege. The principle of least privilege ensures that users are granted only the minimum permissions necessary for their role, preventing network administrators from having access to firewall configuration that is outside their job function.

Security operations

Question

A security administrator notices that a specific network administrator is making unauthorized changes to the firewall every Saturday morning. Which of the following would be used to mitigate this issue so that only security administrators can make changes to the firewall?

Options

  • AMandatory vacations
  • BJob rotation
  • CLeast privilege
  • DTime of day restrictions

How the community answered

(26 responses)
  • B
    4% (1)
  • C
    92% (24)
  • D
    4% (1)

Why each option

The principle of least privilege ensures that users are granted only the minimum permissions necessary for their role, preventing network administrators from having access to firewall configuration that is outside their job function.

AMandatory vacations

Mandatory vacations temporarily remove an employee from duty but do not alter their access rights or prevent unauthorized changes when they are present.

BJob rotation

Job rotation moves employees between roles periodically but does not restrict the permissions available to any given role at any given time.

CLeast privilegeCorrect

Least privilege restricts each user account to only the rights and permissions required for their specific job duties. By ensuring that only security administrators hold the access rights to modify firewall rules, network administrators are technically unable to make those changes regardless of when they attempt to do so.

DTime of day restrictions

Time of day restrictions would limit when the administrator could make changes but would not prevent unauthorized access during permitted hours.

Concept tested: Least privilege access control for administrative roles

Source: https://csrc.nist.gov/glossary/term/least_privilege

Topics

#least privilege#access control#firewall management#authorization

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice