What is the security management term for establishing whether someone’s identity is correct?

What is the security management term for establishing whether someone’s identity is correct?
A . Identification
B . Authentication
C . Authorisation
D . Verification

Answer: B

Explanation:

Authentication is the security management term for establishing whether someone’s identity is correct. Authentication is the process of verifying the identity of a person or entity that claims to be who or what they say they are. Authentication can be based on something the person or entity knows (e.g. a password or a PIN), something they have (e.g. a token or a smart card), something they are (e.g. a biometric feature or a behavioural pattern), or a combination of these factors. Authentication is used to ensure that only authorized parties can access information or resources that they are entitled to. ISO/IEC 27001:2022 defines authentication as “provision of assurance that a claimed characteristic of an entity is correct” (see clause 3.5).

Reference: [CQI & IRCA Certified ISO/IEC 27001:2022 Lead Auditor Training Course], ISO/IEC 27001:2022 Information technology ― Security techniques ― Information security management systems ― Requirements, [What is Authentication?]

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments