A manager suspects that an IT employee with elevated database access may be knowingly modifying financial transactions for the benefit of a competitor. Which of the following practices should the manager implement to validate the concern?
Shouldn't the answer be B? Separation of duties would prevent fraud but not detect it .Mandatory vacations would detect malicious activity when it occurs.
The question is: Which of the following practices should the manager implement to validate the concern?
So the concern is there and now that need to validate/disprove it...
Mandatory vacations - would a lot the company time to audit his work and discover/validate the concern.
Separation of duties - would be able to prevent this from occurring in the future.
B. Mandatory vacations
If you send the suspected insider on a vacation (implementing mandatory vacation for all employees) and the transactions stop then you will have validate the suspicions of the insider threat actor
Separation of Duties would prevent this to happend, what it's needed here is to "validate the concern", Mandatory Vacations are used to detect fraud, or suspicious activity.
"knowingly modifying" key word.
A. Separation of Duties
Separation of duties -- is a means of establishing checks and balances against the possibility that critical systems or procedures can be compromised by insider threats. Separation of duties states that no one person should have too much power or responsibility. Duties and responsibilities should be divided among individuals to prevent ethical conflicts or abuse of powers. Duties such as authorization and approval and design and development should not be held by the same individual, because it would be far too easy for that individual to exploit an organization into using only specific software that contains vulnerabilities or taking on projects that would be beneficial to that individual.
valid point but not the question posed. Not trying to figure out how to prevent it from happening. The question only seems to be how to validate the concern that the employee is doing what they suspect him of doing...
Which would be mandatory vacations so that employee's work could be audited. after which I'm sure they will want to implement separation of duties.
They need to start putting these answers together as both Seperation of duties and Mandatory Vacations helps detect fraud , this test is starting to piss me off. Comptia stop putting answers on test like this. I'm going to let them know how I feel about this on the comments section of the test.
It is possible that all this companies IT personnel may have this access, so mandatory vacations wouldn't solve this. What this problem needs is for IT to only have access to financial databases when needed, ideally 'least privilege' but also separation of duties, which would possibly allocate a DB Admin role, not accessible to all IT personnel, and only granted for specific issue resolution.
Has to be B. If he has elevated access, that won't prevent him from accessing the database even if seperation of duties occurred. If he is on vacation, then we'll know who's modifying the transactions.
Even if there was a separation of duties, if the IT has elevated DB access, he can always access the financial transactions no matter what. I think B is the correct answer here. Let him have a mandatory vacation and check records for validation.
The thing here is validation. The manager needs to validate his concern therefore a mandatory vacation would identify the validity of the managers suspicion.
Separation of duties policies also apply to IT personnel. As an example, a group of IT administrators may be assigned responsibility for maintaining a group of database servers. However, they would not be granted access to security logs on these servers. Instead,
security administrators regularly review these logs, but these security administrators will not have access to data within the databases.
Darril Gibson CompTIA Security+ SY0-501 Study Guide
This section is not available anymore. Please use the main Exam Page.SY0-501 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Stefanvangent
Highly Voted 5 years, 11 months agobillie
Highly Voted 5 years, 10 months agowwwwwsr
4 years, 4 months agoFNavarro
4 years, 4 months agoLB54
Most Recent 3 years, 12 months agoiHungover
4 years, 1 month agoVero00
4 years, 2 months agoMortG7
4 years, 4 months agoMiltduhilt
4 years, 5 months agoLB54
3 years, 12 months agowho__cares123456789___
4 years, 6 months agoexiledwl
4 years, 6 months agoWillGTechDaily
4 years, 8 months agoDW_2020
4 years, 9 months agoHanzero
4 years, 10 months agoAndy2929
4 years, 10 months agorobopips
4 years, 11 months agoKudojikuto
4 years, 12 months agoCh3er1o
5 years agoJo3
5 years ago