PDA

View Full Version : Transparancy of controls


CISSP_Candidate
08-30-2006, 08:06 AM
Q. Transparency of Controls does all of the following EXCEPT

A. Allow authorized users access without hindering business operations.
B. Deny unauthorized access without revealing system knowledge to attackers.
C. Log all important activity without identifying monitoring techqniques to attackers
D. Ensure that security activity does not impact system performance.

Many have you must have seent this question, from the ISC2 exam guide. The answer is also in there but I am looking for better explaination.
Thanks

Jescoi
08-30-2006, 08:06 AM
I would go for B. All other options are anyway need to be carried out.

VP
Very Happy


But, keeping unauthorized users out is indeed a requirement of any control and not revealing is important because otherwise they would try to bypass the control.