Which of the following questions is less likely to help in assessing physical and environmental protection?
Which of the following questions is less likely to help in assessing physical and environmental protection?
A . Are entry codes changed periodically?
B . Are appropriate fire suppression and prevention devices installed and working?
C . Are there processes to ensure that unauthorized individuals cannot read, copy, alter, or steal printed or electronic information?
D . Is physical access to data transmission lines controlled?
Answer: C
Explanation: Physical security and environmental security are part of operational controls, and are measures taken to protect systems, buildings, and related supporting infrastructures against threats associated with their physical environment. All the questions above are useful in assessing physical and environmental protection except for the one regarding processes that ensuring that unauthorized individuals cannot access information, which is more a production control. Source: SWANSON, Marianne, NIST Special Publication 800-26, Security Self-Assessment Guide for Information Technology Systems, November 2001 (Pages A-21 to A-24).
Latest SSCP Dumps Valid Version with 1074 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund