Certified in Risk and Information Systems Control (CRISC) — Question 636
You are the project manager of your enterprise. You have introduced an intrusion detection system for the control. You have identified a warning of violation of security policies of your enterprise. What type of control is an intrusion detection system (IDS)?
Answer options
- A. Detective
- B. Corrective
- C. Preventative
- D. Recovery
Correct answer: A
Explanation
An intrusion detection system (IDS) is considered a detective control because it is designed to identify and alert on security incidents and violations after they have occurred. The other options, such as corrective and preventative controls, focus on preventing incidents or mitigating their effects rather than detecting them.