SY0-301 · Question #712
Which of the following policies could be implemented to help prevent users from displaying their login credentials in open view for everyone to see?
The correct answer is B. Clean desk. A clean desk policy prevents employees from leaving sensitive information, including written passwords or credentials, visible in the workplace.
Question
Which of the following policies could be implemented to help prevent users from displaying their login credentials in open view for everyone to see?
Options
- APrivacy
- BClean desk
- CJob rotation
- DPassword complexity
How the community answered
(25 responses)- A8% (2)
- B88% (22)
- D4% (1)
Why each option
A clean desk policy prevents employees from leaving sensitive information, including written passwords or credentials, visible in the workplace.
A privacy policy governs how personal data is collected and used by an organization, not how employees manage visible credentials at their desks.
A clean desk policy requires employees to secure or remove sensitive materials - including written passwords and notes - from their desks when not in use or when away from their workstation. This directly mitigates the risk of shoulder surfing or casual observation of credentials by unauthorized individuals. It is a standard administrative control in security frameworks.
Job rotation is a fraud-prevention control that limits the ability of any one employee to commit undetected misconduct over time, not a physical credential exposure control.
Password complexity policies govern the strength and format of passwords but do not prevent users from writing them down and displaying them openly.
Concept tested: Clean desk policy for physical credential security
Source: https://www.sans.org/white-papers/1400/
Topics
Community Discussion
No community discussion yet for this question.