Certified Information Privacy Technologist (CIPT) — Question 110
An organization’s customers have suffered a number of data breaches through successful social engineering attacks. Which is the most effective preventative technical control to reduce the risk of future occurrences?
Answer options
- A. Audit and logging.
- B. Training and awareness.
- C. Data loss prevention (DLP).
- D. Multi-factor authentication.
Correct answer: D
Explanation
Multi-factor authentication (MFA) significantly enhances security by requiring users to provide multiple forms of verification before gaining access, making it harder for attackers to succeed. While audit and logging, training and awareness, and data loss prevention are important, they do not directly prevent unauthorized access in the same way that MFA does.