New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CSSLP Exam - Topic 9 Question 96 Discussion

Actual exam question for ISC2's CSSLP exam
Question #: 96
Topic #: 9
[All CSSLP Questions]

You work as an analyst for Tech Perfect Inc. You want to prevent information flow that may cause a conflict of interest in your organization representing competing clients. Which of the following security models will you use?

Show Suggested Answer Hide Answer
Suggested Answer: B

The Chinese Wall Model is the basic security model developed by Brewer and Nash. This model prevents information flow that may cause a

conflict of interest in an organization representing competing clients. The Chinese Wall Model provides both privacy and integrity for data.

Answer D is incorrect. The Biba model is a formal state transition system of computer security policy that describes a set of access

control rules designed to ensure data integrity. Data and subjects are grouped into ordered levels of integrity. The model is designed so that

subjects may not corrupt data in a level ranked higher than the subject, or be corrupted by data from a lower level than the subject.

Answer C is incorrect. The Clark-Wilson model provides a foundation for specifying and analyzing an integrity policy for a computing

system. The model is primarily concerned with formalizing the notion of information integrity. Information integrity is maintained by preventing

corruption of data items in a system due to either error or malicious intent.

The model's enforcement and certification rules define data items and processes that provide the basis for an integrity policy. The core of the

model is based on the notion of a transaction.

Answer A is incorrect. The Bell-La Padula Model is a state machine model used for enforcing access control in government and military

applications. The model is a formal state transition model of computer security policy that describes a set of access control rules which use

security labels on objects and clearances for subjects. Security labels range from the most sensitive (e.g.,'Top Secret'), down to the least

sensitive (e.g., 'Unclassified' or 'Public').

The Bell-La Padula model focuses on data confidentiality and controlled access to classified information, in contrast to the Biba Integrity Model

which describes rules for the protection of data integrity.


Contribute your Thoughts:

0/2000 characters
Larae
3 months ago
Not sure if the Chinese Wall is foolproof, though.
upvoted 0 times
...
Leota
3 months ago
100% agree with the Chinese Wall model!
upvoted 0 times
...
Henriette
3 months ago
Wait, isn't the Clark-Wilson model better for integrity?
upvoted 0 times
...
Shad
4 months ago
I think the Bell-LaPadula model is more relevant.
upvoted 0 times
...
Donte
4 months ago
Definitely the Chinese Wall model for this situation.
upvoted 0 times
...
Billye
4 months ago
The Biba model is about maintaining integrity, right? I don't think it applies here either, so I'm leaning towards the Chinese Wall model as well.
upvoted 0 times
...
Silvana
4 months ago
I practiced a question similar to this, and I believe the Clark-Wilson model focuses on integrity, which doesn't seem to fit this scenario.
upvoted 0 times
...
Alaine
4 months ago
I'm not entirely sure, but I remember the Bell-LaPadula model is more about confidentiality, not really about preventing conflicts of interest.
upvoted 0 times
...
Tennie
5 months ago
I think the Chinese Wall model might be the right choice here since it specifically addresses conflicts of interest between competing clients.
upvoted 0 times
...
Rosina
5 months ago
The Biba model is about upward integrity, which doesn't seem to address the issue of preventing conflicts of interest. I'm going to go with the Chinese Wall model.
upvoted 0 times
...
Colette
5 months ago
The Clark-Wilson model focuses on integrity, so that doesn't seem relevant to this question about preventing information flow. I'm leaning towards the Chinese Wall model.
upvoted 0 times
...
Malcom
5 months ago
Hmm, I'm not sure about this one. The Bell-LaPadula model is also about access control, but I'm not sure if it's the right fit for this scenario.
upvoted 0 times
...
Elvera
5 months ago
I think the Chinese Wall model is the best choice here. It's designed to prevent conflicts of interest by isolating data from different clients.
upvoted 0 times
...
Gladys
1 year ago
The Biba model? What is this, a pasta dish? I'll stick with the Chinese Wall, it's the most appetizing option on the menu.
upvoted 0 times
...
Brynn
1 year ago
I personally prefer the Clark-Wilson model because it focuses on integrity constraints, which are crucial in preventing information flow that may lead to conflicts.
upvoted 0 times
...
Leatha
1 year ago
I agree with Michel, the Chinese Wall model seems like the best choice to prevent conflicts of interest.
upvoted 0 times
...
Fabiola
1 year ago
The Bell-LaPadula model seems a bit too strict for this scenario. I don't think we need to worry about classified information leaks, just keeping our clients separated.
upvoted 0 times
Cordelia
12 months ago
C) Clark-Wilson model
upvoted 0 times
...
Tarra
12 months ago
B) Chinese Wall model
upvoted 0 times
...
Jarvis
12 months ago
A) Bell-LaPadula model
upvoted 0 times
...
...
Nichelle
1 year ago
The Chinese Wall model sounds like the perfect solution to prevent conflicts of interest. It's like building a literal wall between competing clients, but without the construction workers and hard hats.
upvoted 0 times
Vicente
12 months ago
D) Biba model
upvoted 0 times
...
Allene
1 year ago
C) Clark-Wilson model
upvoted 0 times
...
Destiny
1 year ago
B) Chinese Wall model
upvoted 0 times
...
Jeannetta
1 year ago
A) Bell-LaPadula model
upvoted 0 times
...
...
Michel
1 year ago
I think I would use the Chinese Wall model.
upvoted 0 times
...

Save Cancel