Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCED Topic 2 Question 48 Discussion

Actual exam question for GIAC's GCED exam
Question #: 48
Topic #: 2
[All GCED Questions]

Which statement below is the MOST accurate about insider threat controls?

Show Suggested Answer Hide Answer
Suggested Answer: A

A company needs to classify its information as a key step in valuing it and knowing where to focus its protection.

Rotation of duties and separation of duties are both key elements in reducing the scope of information access and the ability to conceal malicious behavior.

Separation of duties helps minimize ''empire building'' within a company, keeping one individual from controlling a great deal of information, reducing the insider threat.

Security awareness programs can help other employees notice the signs of an insider attack and thus reduce the insider threat.

Detection is a reactive method and only occurs after an attack occurs. Only preventative methods can stop or limit an attack.


Contribute your Thoughts:

Shaquana
3 months ago
I disagree with D) Rotation of duties makes an insider threat more likely, as it actually helps reduce the risk of insider threats by spreading responsibilities.
upvoted 0 times
...
Phuong
3 months ago
I believe C) Both detective and preventative controls prevent insider attacks is also important, as having a combination of controls is effective.
upvoted 0 times
...
Dalene
3 months ago
I agree with Arthur, because knowing what data needs protection is crucial in preventing insider threats.
upvoted 0 times
...
Arthur
3 months ago
I think the most accurate statement is A) Classification of information assets helps identify data to protect.
upvoted 0 times
...
Cathrine
3 months ago
Whoa, option D? Rotation of duties? That's like giving the keys to the bank vault to a different employee every day. Definitely not the way to go!
upvoted 0 times
Gary
3 months ago
C) Both detective and preventative controls prevent insider attacks.
upvoted 0 times
...
Junita
3 months ago
A) Classification of information assets helps identify data to protect.
upvoted 0 times
...
...
Vilma
3 months ago
Option C seems the best to me. A combination of detective and preventative controls is essential for mitigating insider threats effectively.
upvoted 0 times
...
Quentin
3 months ago
I think option A is the most accurate. Proper classification of information assets is crucial for identifying and protecting sensitive data from insider threats.
upvoted 0 times
Ciara
3 months ago
User 2
upvoted 0 times
...
Lashawna
3 months ago
User 1
upvoted 0 times
...
...

Save Cancel