CompTIA CASP+ (CAS-004) — Question 272

A company underwent an audit in which the following issues were enumerated:
• Insufficient security controls for internet-facing services, such as VPN and extranet
• Weak password policies governing external access for third-party vendors

Which of the following strategies would help mitigate the risks of unauthorized access?

Answer options

Correct answer: A

Explanation

The correct answer is 2FA (Two-Factor Authentication), which adds an additional layer of security beyond just a password, making unauthorized access much more difficult. While RADIUS, Federation, and OTP are important security technologies, they do not directly address the issue of enhancing user authentication as effectively as 2FA does.