Identity and Access Management Question #79

A company discovered a timing flaw where authorization checks were bypassed during the authentication process. To address this issue, which of the following solutions should you consider? (Choose all that apply)

A. Implement multi-factor authentication (MFA) to strengthen identity verification.
B. Enforce password history policies to prevent users from reusing old passwords.
C. Introduce mechanisms to prevent race conditions that allow unauthorized access during authentication and authorization AND combine authentication and authorization into a single step.
D. Increase the complexity of the encryption algorithm used for data at rest.
Domain Concept: Identity and Access Management

This scenario evaluates management-level decision making in Identity and Access Management. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top