Access Control

Granting or denying access to resources

Access control involves the granting or denying of access to resources based on identity, job function, or other relevant criteria. This subtopic covers the design, implementation, and management of access control systems, as well as the monitoring and auditing of access activity to detect and respond to unauthorized access attempts.
5 minutes 5 Questions

Access Control is a foundational security concept within CISSP (Certified Information Systems Security Professional) that governs how resources are accessed by users, systems, and entities. It encompasses mechanisms, policies, and procedures designed to restrict entry to physical locations and digi…

Concepts covered: Authorization and Access, Discretionary Access Control, Mandatory Access Control, Password Policy, Separation of Duties, Role-Based Access Control, Time-Based Access Control, Access Control List, Physical Access Controls, Attribute-Based Access Control, Least Privilege, Identification and Authentication, Accountability and Auditing, Context-Based Access Control

Test mode:
CISSP - Access Control Example Questions

Test your knowledge of Access Control

Question 1

Which of the following is an example of a Physical Control in Access Control?

Question 2

What is the difference between Identification and Authentication?

Question 3

Which of the following Authentication factors is something the user knows?

More Access Control questions
172 questions (total)