Identity and Access Management Question #78

You are working for a mid-sized company that is implementing access controls for sensitive data. What is the primary purpose of an access control matrix in such a company setting?

A. To authenticate users and verify their identity before granting access to resources.
B. To authorize users and determine what actions they are allowed to perform on various resources.
C. To manage and assign file permissions specifically in Windows file systems.
D. To define security levels and enforce data classification based on the Bell-LaPadula model.
Domain Concept: Identity and Access Management

This scenario evaluates management-level decision making in Identity and Access Management. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top