Separation of duties
This scenario describes separation of duties—not allowing the same person to hold two roles that, when combined, are sensitive. While two-person control is a similar concept, it does not apply in this case because the scenario does not say that either action requires the concurrence of two users.
The indexed versions don't agree on this one
This question appears on 8 CBT versions we've indexed, and they don't all give the same answer. Exam editions change and answer keys get re-cut, so more than one of these was correct on the test it came from. Here is each of them, and how many versions give it.
This scenario describes separation of duties—not allowing the same person to hold two roles that, when combined, are sensitive. While two-person control is a similar concept, it does not apply in this case because the scenario does not say that either action requires the concurrence of two users.
Cissp Exam Answers · Cissp Sample Test · Example Cissp Exam Questions
The practice of requiring that processes should be divided between two or more individuals; no one person in an organization should have the ability to control or close down a security activity
12 Principles Of Information Security
Distributing tasks and associated privileges among multiple people, primary objective to prevent fraud and errors
Cissp Flashcards Pdf
A means of establishing checks and balances against the possibility that critical systems or procedures can be compromised by rogue use of access permissions. It includes least privilege, SOPs, shared authority, auditing, mandatory vacations, and other policies.
Comptia Certmaster Practice For Network+
Prevents fraud by requiring more than one person to complete a critical process
Comptia Security+ Study Guide
When 2 or more employees split critical task functions
Legal And Privacy Issues In Information Security
Know which one your test keyed? One click. No account needed.