Identity and Access Management Question #161

When onboarding new users to a legacy application that only supports single-factor authentication (password), what is the most secure approach for handling initial credentials?

A. Create a unique, temporary password that expires quickly and requires a change on first login.
B. Use a single default password for all new users to simplify the helpdesk process.
C. Enforce extreme password complexity with special characters immediately.
D. Set a short password expiration time for all subsequent cycles.
Domain Concept: Identity and Access Management

This scenario evaluates management-level decision making in Identity and Access Management. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top