CompTIA Security+ (SY0-601) — Question 589
Which of the following is best used to detect fraud by assigning employees to different roles?
Answer options
- A. Least privilege
- B. Mandatory vacation
- C. Separation of duties
- D. Job rotation
Correct answer: D
Explanation
Job rotation is effective in detecting fraud because it prevents any one employee from having unchecked control over a critical process for an extended period. The other options, while beneficial for security, do not specifically address the prevention and detection of fraud through role changes, making them less effective in this context.