Certified in Risk and Information Systems Control (CRISC) — Question 286
Which of the following BEST provides an early warning that network access of terminated employees is not being revoked in accordance with the service level agreement (SLA)?
Answer options
- A. Monitoring key access control performance indicators
- B. Updating multi-factor authentication
- C. Analyzing access control logs for suspicious activity
- D. Revising the service level agreement (SLA)
Correct answer: A
Explanation
The correct answer, A, emphasizes the importance of tracking access control performance metrics to identify potential issues with access revocation. Options B and D do not directly address the monitoring of terminated employees' access, while option C focuses on analyzing logs after the fact rather than proactively monitoring performance indicators.