Which of the following file types must be monitored by a change-detection mechanism (for example, a file-integrity monitoring tool)?

Which of the following file types must be monitored by a change-detection mechanism (for example, a file-integrity monitoring tool)?
A . Application vendor manuals
B . Files that regularly change
C . Security policy and procedure documents
D . System configuration and parameter files

Answer: D

Explanation:

According to the PCI DSS v3.2.1 Quick Reference Guide1, system configuration and parameter files must be monitored by a change-detection mechanism (for example, a file-integrity monitoring tool). This is one of the requirements for ensuring that changes to system configuration and parameter files are detected and verified.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments