nerdexam
CompTIA

SY0-301 · Question #842

Which of the following could a security administrator implement to mitigate the risk of tailgating for a large organization?

The correct answer is D. Train employees on risks associated with social engineering attacks and enforce policies. Tailgating (also called piggybacking) is a physical social engineering attack where an unauthorized person follows an authorized employee through a secured entrance. The most scalable and effective mitigation for a large organization is security awareness training that teaches…

Threats, vulnerabilities, and mitigations

Question

Which of the following could a security administrator implement to mitigate the risk of tailgating for a large organization?

Options

  • ATrain employees on correct data disposal techniques and enforce policies.
  • BOnly allow employees to enter or leave through one door at specified times of the day.
  • COnly allow employees to go on break one at a time and post security guards 24/7 at each entrance.
  • DTrain employees on risks associated with social engineering attacks and enforce policies.

How the community answered

(32 responses)
  • A
    6% (2)
  • B
    3% (1)
  • C
    6% (2)
  • D
    84% (27)

Explanation

Tailgating (also called piggybacking) is a physical social engineering attack where an unauthorized person follows an authorized employee through a secured entrance. The most scalable and effective mitigation for a large organization is security awareness training that teaches employees to recognize and challenge tailgating attempts, combined with enforced policies. Options B and C are impractical at scale and would severely disrupt operations. Option A addresses data disposal, which is unrelated to tailgating.

Topics

#tailgating#physical security#social engineering#security awareness training

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice