Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CISSP Exam - Topic 6 Question 8 Discussion

What access control scheme uses fine-grained rules to specify the conditions under which access to each data item or applications is granted?
D) Attribute Based Access Control (ABAC)
A) Mandatory Access Control (MAC)
B) Discretionary Access Control (DAC)
C) Role Based Access Control (RBAC)

ISC2 CISSP Exam - Topic 6 Question 8 Discussion

Actual exam question for ISC2's CISSP exam
Question #: 8
Topic #: 6
[All CISSP Questions]

What access control scheme uses fine-grained rules to specify the conditions under which access to each data item or applications is granted?

Show Suggested Answer Hide Answer

Contribute your Thoughts:

0/2000 characters
Micaela
8 months ago
Wait, are we sure ABAC is the right answer? Sounds too complicated.
upvoted 0 times
...
Christiane
9 months ago
Totally agree, ABAC is the way to go for flexibility!
upvoted 0 times
...
Trinidad
9 months ago
MAC is more rigid, not fine-grained like ABAC.
upvoted 0 times
...
Levi
9 months ago
I thought it was Role Based Access Control (RBAC).
upvoted 0 times
...
Slyvia
9 months ago
It's definitely Attribute Based Access Control (ABAC)!
upvoted 0 times
...
Wilda
9 months ago
I feel like ABAC is the best fit here, but I keep mixing it up with DAC. They both sound similar!
upvoted 0 times
...
Glory
9 months ago
I'm not entirely sure, but I remember something about MAC being more rigid. I guess that wouldn't fit the fine-grained aspect.
upvoted 0 times
...
Yen
9 months ago
I think the answer might be D, Attribute Based Access Control. It uses specific attributes to determine access, right?
upvoted 0 times
...
Lavonna
9 months ago
I practiced a similar question, and I think RBAC is more about roles than fine-grained rules. So, it can't be C.
upvoted 0 times
...
Shaniqua
9 months ago
No problem, I've got this. The last address in the 2001:db8:: block is 2001:db8::ffff:ffff:ffff:ffff.
upvoted 0 times
...
Alethea
9 months ago
I believe checking Issue Security Levels is important too, but I could be mixing that up with something else. Has anyone else thought about that?
upvoted 0 times
...
Sherly
10 months ago
Hmm, I feel like they also publish information about revoked certificates. I read something about that in a similar practice question.
upvoted 0 times
...
Callie
10 months ago
Wait, I'm a little confused. Is it segmentation or targeting that comes next? I need to double-check my notes to make sure I'm not mixing up the order of the STP process.
upvoted 0 times
...

Save Cancel