Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the concepts of security, compliance, and identityEasy

A financial institution needs to ensure that all sensitive data, whether stored on servers or transmitted across networks, is unreadable to unauthorized parties if intercepted. Which security principle is being addressed by this requirement?

  1. AConfidentiality
  2. BNon-repudiation
  3. CAvailability
  4. DIntegrity
Show answer & explanation

Correct answer: A. Confidentiality

Confidentiality is the principle of ensuring that information is accessible only to those authorized to have access. Making data unreadable to unauthorized parties directly supports confidentiality, preventing unauthorized disclosure.

Why the other options are wrong

  • B. Non-repudiation ensures that a party cannot deny having performed an action.
  • C. Availability ensures that authorized users can access information when needed.
  • D. Integrity focuses on preventing unauthorized modification or destruction of data.

Confidentiality

The security principle that ensures unauthorized individuals, entities, or processes cannot access or disclose information.

  • Prevents unauthorized information disclosure.
  • Often implemented using encryption.
  • A fundamental part of data protection.

Memory trick: Keep secrets safe, ensure data is truthful, and always available.

More Describe the concepts of security, compliance, and identity questions