Security Operations Question #29

After an audit, your organization finds current measures insufficient for investigating unauthorized access. Which strategy would be the most effective to implement to enhance accountability?

A. Merging all sensitive data into a single, centralized database to simplify access control and monitoring.
B. Deploying user and entity behavior analytics (UEBA) technology to continuously monitor and analyze user activities for unusual patterns.
C. Implementing a 'need to know' policy where only a select few are granted access to sensitive information.
D. Conducting annual security awareness training for employees to remind them about data protection.
Domain Concept: Security Operations

This scenario evaluates management-level decision making in Security Operations. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top