Certified Information Systems Security Professional (CISSP) — Question 43
A company developed a web application which is sold as a Software as a Service (SaaS) solution to the customer. The application is hosted by a web server running on a specific operating system (OS) on a virtual machine (VM). During the transition phase of the service, it is determined that the support team will need access to the application logs. Which of the following privileges would be the MOST suitable?
Answer options
- A. Administrative privileges on the hypervisor
- B. Administrative privileges on the application folders
- C. Administrative privileges on the web server
- D. Administrative privileges on the OS
Correct answer: B
Explanation
The correct answer is B, as administrative privileges on the application folders specifically provide access to the application logs that the support team needs. Other options, such as A, C, and D, offer broader access that may not be necessary for log retrieval, potentially compromising security and control.