Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

PECB ISO-IEC-27001-Lead-Implementer Exam - Topic 1 Question 67 Discussion

According to ISO/IEC 27001 controls, why should the use of privileged utility programs be restricted and tightly controlled?
B) To prevent misuse of utility programs that could override system and application controls
A) To ensure that utility programs are compatible with existing system software
C) To enable the correlation and analysis of security-related events

PECB ISO-IEC-27001-Lead-Implementer Exam - Topic 1 Question 67 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 67
Topic #: 1
[All ISO-IEC-27001-Lead-Implementer Questions]

According to ISO/IEC 27001 controls, why should the use of privileged utility programs be restricted and tightly controlled?

Show Suggested Answer Hide Answer
Suggested Answer: B

ISO/IEC 27002:2022 Clause 8.11 addresses ''Use of privileged utility programs'':

'The use of utility programs that might be capable of overriding system and application controls should be restricted and tightly controlled to prevent misuse.'

Such tools can provide powerful access or modification capabilities, which if misused can compromise the integrity and confidentiality of systems.


ISO/IEC 27002:2022 Clause 8.11

ISO/IEC 27001:2022 Annex A Control A.8.11

Contribute your Thoughts:

0/2000 characters
Magnolia
7 hours ago
I think B is the best choice. Misuse can lead to serious security risks.
upvoted 0 times
...
Hector
5 days ago
Are we sure restricting them is enough? Seems like a band-aid solution.
upvoted 0 times
...
Tamala
11 days ago
Wow, I didn’t realize how risky utility programs could be!
upvoted 0 times
...
Aretha
16 days ago
C sounds good, but is it really a priority over preventing misuse?
upvoted 0 times
...
Nettie
2 months ago
I think A is important too, but not as critical as B.
upvoted 0 times
...
Dona
2 months ago
B is definitely the main reason! Misuse can lead to huge issues.
upvoted 0 times
...
Francisca
3 months ago
I thought it was also about ensuring compatibility, but I lean towards B since misuse seems like a bigger risk.
upvoted 0 times
...
Paul
3 months ago
I have a vague recollection that these utility programs can really mess things up if not controlled properly. Maybe it’s about preventing unauthorized access?
upvoted 0 times
...
Mollie
3 months ago
I remember a practice question that emphasized the importance of controlling these programs to maintain system integrity. It feels like B is the right choice.
upvoted 0 times
...
Hyun
3 months ago
I think restricting privileged utility programs is mainly about preventing misuse, but I'm not entirely sure if that's the only reason.
upvoted 0 times
...

Save Cancel