Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCED Topic 9 Question 56 Discussion

Actual exam question for GIAC's GCED exam
Question #: 56
Topic #: 9
[All GCED Questions]

Which statement below is the MOST accurate about insider threat controls?

Show Suggested Answer Hide Answer
Suggested Answer: A

A company needs to classify its information as a key step in valuing it and knowing where to focus its protection.

Rotation of duties and separation of duties are both key elements in reducing the scope of information access and the ability to conceal malicious behavior.

Separation of duties helps minimize ''empire building'' within a company, keeping one individual from controlling a great deal of information, reducing the insider threat.

Security awareness programs can help other employees notice the signs of an insider attack and thus reduce the insider threat.

Detection is a reactive method and only occurs after an attack occurs. Only preventative methods can stop or limit an attack.


Contribute your Thoughts:

Layla
1 months ago
I agree with Jean. D) makes sense because it limits the opportunities for malicious insiders to exploit their positions.
upvoted 0 times
...
Jean
1 months ago
I see your point, Gilberto. But I think D) is also important. Rotation of duties can help reduce the likelihood of insider threats.
upvoted 0 times
...
Kenny
1 months ago
I'm not sure about that. Option C seems more accurate to me - a combination of detective and preventative controls is key for insider threat.
upvoted 0 times
...
Jeannetta
1 months ago
Haha, option D is just silly. Rotation of duties is a well-known security best practice, not something that makes insider threats more likely!
upvoted 0 times
...
Gilberto
1 months ago
I disagree, I believe C) is the best option. Both detective and preventative controls are essential in preventing insider attacks.
upvoted 0 times
...
Ashley
2 months ago
Option A is definitely the most accurate. Classifying information assets is crucial for identifying what needs to be protected.
upvoted 0 times
Jacklyn
9 days ago
E) Separation of duties encourages one employee to control a great deal of information.
upvoted 0 times
...
Lorean
10 days ago
C) Both detective and preventative controls prevent insider attacks.
upvoted 0 times
...
Ernie
11 days ago
E) Separation of duties encourages one employee to control a great deal of information.
upvoted 0 times
...
Izetta
12 days ago
A) Classification of information assets helps identify data to protect.
upvoted 0 times
...
Amie
15 days ago
C) Both detective and preventative controls prevent insider attacks.
upvoted 0 times
...
Hermila
16 days ago
A) Classification of information assets helps identify data to protect.
upvoted 0 times
...
...
Gerri
2 months ago
I think A) is the most accurate. Classifying information assets is crucial for protecting data.
upvoted 0 times
...

Save Cancel