Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCCC Topic 8 Question 58 Discussion

Actual exam question for GIAC's GCCC exam
Question #: 58
Topic #: 8
[All GCCC Questions]

An organization is implementing a control for the Account Monitoring and Control CIS Control, and have set the Account Lockout Policy as shown below. What is the risk presented by these settings?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Dan
1 months ago
I bet the organization's cybersecurity team was like, 'Let's make it so secure, even our own employees can't get in!' Brilliant!
upvoted 0 times
...
Carey
1 months ago
Once locked, accounts can't be unlocked? Wow, that's like a one-way ticket to the password graveyard. Guess the IT team will be busy resetting passwords all day.
upvoted 0 times
Felicidad
17 days ago
A) Brute-force password attacks could be more effective.
upvoted 0 times
...
...
Janessa
1 months ago
Password length and complexity reduced? Well, that's one way to make it easier for everyone to remember their passwords. Maybe they should just use '12345' instead.
upvoted 0 times
...
Jesusita
2 months ago
Okay, so legitimate users might get locked out? Sounds like a great way to keep them from accessing the resources they need. Productivity is overrated anyway.
upvoted 0 times
Barney
6 days ago
Carey: Exactly, finding the right balance is key to maintaining both security and productivity.
upvoted 0 times
...
Carey
8 days ago
User 2: Agreed, it's a fine line between security and usability. We don't want to lock out the people who actually need access.
upvoted 0 times
...
Ulysses
21 days ago
User 1: Yeah, setting the Account Lockout Policy too strict can definitely cause issues for legitimate users.
upvoted 0 times
...
...
Barrie
2 months ago
But wouldn't it also make brute-force password attacks more effective if the lockout policy is too lenient?
upvoted 0 times
...
Gail
2 months ago
I agree with Charlesetta. If the account lockout policy is too strict, it could prevent legitimate users from accessing their accounts.
upvoted 0 times
...
Mirta
2 months ago
Looks like these settings could make brute-force attacks a walk in the park. Might as well leave the door wide open for hackers!
upvoted 0 times
Helene
1 months ago
B) Legitimate users could be unable to access resources.
upvoted 0 times
...
Helene
2 months ago
A) Brute-force password attacks could be more effective.
upvoted 0 times
...
...
Charlesetta
3 months ago
I think the risk presented by these settings is that legitimate users could be unable to access resources.
upvoted 0 times
...

Save Cancel