Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the concepts of security, compliance, and identityMedium
A large organization needs to ensure that its employees can access critical business applications and data at all times, even during unexpected outages or cyberattacks. They are investing in redundant systems, backup strategies, and disaster recovery plans. Which core security principle are they primarily focusing on?
- AAvailability
- BNon-repudiation
- CIntegrity
- DConfidentiality
Show answer & explanationAnswer & explanation
Correct answer: A. Availability
Availability ensures that authorized users can access systems and data when needed. Investing in redundancy, backups, and disaster recovery directly addresses the goal of maintaining access during disruptions.
Why the other options are wrong
- B. Non-repudiation ensures actions cannot be denied, which is unrelated to system uptime.
- C. Integrity focuses on preventing unauthorized modification, not continuous access.
- D. Confidentiality focuses on preventing unauthorized disclosure, not continuous access.
Availability
The security principle that ensures authorized users can reliably access information and systems when needed, without interruption.
- Achieved through redundancy, backups, and disaster recovery.
- Protects against denial-of-service attacks and system failures.
- One of the core pillars of information security (CIA triad).
Memory trick: Availability: Always open for business.