Certified Internal Auditor (CIA) Part 3: Business Knowledge for Internal Auditing — Question 30
Which of the following physical access controls is most likely to be based on "something you have" concept?
Answer options
- A. A retina characteristics reader.
- B. A PIN code reader.
- C. A card-key scanner.
- D. A fingerprint scanner.
Correct answer: C
Explanation
The correct answer is C, a card-key scanner, as it requires a physical card for access, representing the 'something you have' aspect. Options A and D involve biometric data, which are based on inherent characteristics, while B relies on knowledge (the PIN code) rather than a physical item.