Least Privilege vs. Separation of Duties
- “Separation of Duties” has to do with splitting tasks among employees to reduce the chance of one employee committing fraud.
- “Least Privilege” is when you only provide employees with the account privileges they need to complete their work.
- The principle of least privilege can support the separation of duties.
The security principle violated by running all processes as root or administrator is the "principle of least privilege." The principle of least privilege states that users and applications should only have the minimum permissions required to perform their necessary tasks, and no more. By running all processes as the root or administrator account, all processes are given full permissions, which could pose a security risk if a malicious process is executed.
Least Privilege vs. Separation of Duties
- “Separation of Duties” has to do with splitting tasks among employees to reduce the chance of one employee committing fraud.
- “Least Privilege” is when you only provide employees with the account privileges they need to complete their work.
- The principle of least privilege can support the separation of duties.
https://www.cubcyber.com/what-is-the-difference-between-separation-of-duties-and-least-privilege#:~:text=Least%20Privilege%20vs%20Separation%20of,need%20to%20complete%20their%20work.
You could argue that A, B and C are all violated (but that would be very nitpicky). But principle of least privileges would surely be the right answer here.
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.200-201 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
SecurityGuy
7 months, 3 weeks agodrdecker100
7 months, 3 weeks agoWISDOM2080
1 year, 8 months agoSecurityGuy
2 years, 6 months agoKokain
3 years, 1 month agoarchbbo
3 years, 2 months agohalamah
3 years, 6 months agoLeo_Visser
3 years, 11 months ago