Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) — Question 55
What is the practice of giving an employee access to only the resources needed to accomplish their job?
Answer options
- A. principle of least privilege
- B. organizational separation
- C. separation of duties
- D. need to know principle
Correct answer: A
Explanation
The principle of least privilege is the correct answer because it ensures that individuals have the minimum level of access required to perform their tasks, reducing the risk of unauthorized access. Organizational separation and separation of duties are concepts related to structuring roles and responsibilities, while the need to know principle pertains more to information access based on necessity rather than just job functions.