Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 ISSAP Exam - Topic 2 Question 118 Discussion

An organization has implemented a hierarchical-based concept of privilege management in which administrators have full access, HR managers have less permission than the administrators, and data entry operators have no access to resources. Which of the following access control models is implemented in the organization?
A) Role-based access control (RBAC)
B) Network-based access control (NBAC)
C) Mandatory Access Control (MAC)
D) Discretionary access control (DAC)

ISC2 ISSAP Exam - Topic 2 Question 118 Discussion

Actual exam question for ISC2's ISSAP exam
Question #: 118
Topic #: 2
[All ISSAP Questions]

An organization has implemented a hierarchical-based concept of privilege management in which administrators have full access, HR managers have less permission than the administrators, and data entry operators have no access to resources. Which of the following access control models is implemented in the organization?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Miles
2 hours ago
I’m confused because discretionary access control (DAC) also has different levels, but I don't think it fits this scenario as well as RBAC does.
upvoted 0 times
...
Carissa
5 days ago
I practiced a similar question last week, and it was definitely about RBAC. The hierarchy of permissions fits that model well.
upvoted 0 times
...
Barb
10 days ago
I'm not entirely sure, but I remember something about mandatory access control (MAC) being more rigid. Could this be MAC instead?
upvoted 0 times
...
Audry
16 days ago
I think this sounds like Role-based access control (RBAC) since it describes different roles with varying levels of access.
upvoted 0 times
...

Save Cancel