What principle does the security at Parvi's workplace illustrate with controlled access and monitoring?

Boost your ISC² exam readiness. Answer questions with detailed explanations. Gear up for certification success!

The principle of secured access and monitoring in Parvi's workplace exemplifies the concept of defense in depth. This approach involves implementing multiple layers of security measures to protect sensitive data and resources. By ensuring that access is controlled and continuously monitored, the organization decreases the risk of unauthorized access, thereby enhancing the overall security posture.

Defense in depth recognizes that no single security measure is sufficient on its own. Instead, it advocates for a comprehensive strategy where each layer compensates for the potential weaknesses of others. This might include physical security controls, access controls, surveillance, and other monitoring systems working together to create a fortified environment.

The other principles illustrated by the other options focus on specific aspects of security that are not as holistic as defense in depth. For instance, two-person integrity involves requiring two individuals to agree on a critical action, which is more about management practices rather than overarching security strategies. Segregation of duties minimizes risk by dividing responsibilities among different individuals but does not necessarily involve controlled access and monitoring directly. Penetration testing, while a valuable security practice for assessing vulnerabilities, focuses on testing an organization's defenses rather than establishing ongoing protective measures.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy