CompTIA Project+ (PK0-005)Basics of IT and GovernanceEasy
A project team is developing a new internal communication platform. During the security considerations phase, they determine that all user-generated content and messages must be encrypted end-to-end to prevent unauthorized eavesdropping, even by internal administrators. Which specific cryptographic objective is being prioritized here?
- AConfidentiality
- BNon-repudiation
- CAuthentication
- DIntegrity
Show answer & explanationAnswer & explanation
Correct answer: A. Confidentiality
End-to-end encryption is primarily used to ensure Confidentiality, meaning that only the sender and intended recipient can read the messages, preventing unauthorized disclosure.
Why the other options are wrong
- B. Non-repudiation ensures that a sender cannot deny having sent a message, typically achieved with digital signatures.
- C. Authentication verifies the identity of users or systems.
- D. Integrity ensures that data has not been altered or tampered with.
Confidentiality (Cryptography)
In cryptography, confidentiality ensures that information is accessible only to those authorized to have access, preventing unauthorized disclosure.
- Achieved through encryption.
- Protects sensitive data from eavesdropping.
- A core component of the CIA Triad.
Memory trick: CAN I: Confidentiality, Authentication, Non-repudiation, Integrity.