Administrative controls are used as security measures for employees. When designing a defense-in-depth method using administrative controls, which of the following are the most appropriate controls?a.Computer patching and email scanningb.Telephone monitoring and building accessc.Security awareness training and written policiesd.Written procedures and non-disclosure agreements (NDAs)
Question
Administrative controls are used as security measures for employees. When designing a defense-in-depth method using administrative controls, which of the following are the most appropriate controls?a.Computer patching and email scanningb.Telephone monitoring and building accessc.Security awareness training and written policiesd.Written procedures and non-disclosure agreements (NDAs)
Solution
The most appropriate controls when designing a defense-in-depth method using administrative controls would be c. Security awareness training and written policies.
Here's why:
a. Computer patching and email scanning - These are more related to technical controls rather than administrative controls. They involve the use of technology to protect systems and data.
b. Telephone monitoring and building access - These are physical controls. They involve securing the organization's physical premises and resources.
c. Security awareness training and written policies - These are administrative controls. They involve creating and enforcing policies and procedures that promote security within the organization. Security awareness training ensures that employees are aware of the security risks and
Similar Questions
Which controls fit into the Basic Controls implementation group?Hardware and Software inventoryVulnerability ManagementMalware DefensesData ProtectionControlling the use of administrator accountsSecurity Awareness TrainingSubmit
Imagine you’re a security manager at a financial company. Recently, employees have been using personal email accounts for business communications, violating the company’s security policies. What type of controls should you implement to effectively discourage employees from using insecure methods for business communications?1 pointCorrective controlsPhysical controlsDetective controlsDeterrent controls
Which of the following is a set of controls in order that satisfy the Defense-In-Depth?Group of answer choicesPolicies and Procedures, Virtual Private Network (VPN), Firewall, Access ControlLocked external gates, Security guard, Locked internal doors, Locked server roomFirewalls, Intrusion detection system, Anti-malware, Access controlAll of these
Among the following which one is the most important when it comes to protection of company or individual information as a security administrator a. Protection and proper use of company or client personal information b. Know the processes to protect company's information c. Build proper security practices within the organization d. all of the above
Which of the following activities may be part of establishing security controls? Select three answers.1 pointMonitor and record user requestsImplement multi-factor authenticationEvaluate whether current controls help achieve business goalsCollect and analyze security data regularly
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.