CompTIA Security+ (SY0-501) — Question 444
A new intern in the purchasing department requires read access to shared documents. Permissions are normally controlled through a group called "Purchasing", however, the purchasing group permissions allow write access.
Which of the following would be the BEST course of action?
Answer options
- A. Modify all the shared files with read only permissions for the intern.
- B. Create a new group that has only read permissions for the files.
- C. Remove all permissions for the shared files.
- D. Add the intern to the "Purchasing" group.
Correct answer: B
Explanation
Creating a new group with read-only permissions ensures that the intern can access the documents without the risk of making changes, which is the most secure solution. Modifying all shared files to read-only is impractical and could affect other users, while removing all permissions would deny access entirely. Adding the intern to the 'Purchasing' group would grant them write access, which is not desirable.