ISC2 Certified in Cybersecurity (CC)Security PrinciplesHard

During a security audit, it's discovered that several former employees still have active accounts with access to sensitive company resources. This directly violates the principle of 'least privilege'. Which core security principle is being undermined by this situation?

  1. AAuthorization
  2. BIntegrity
  3. CConfidentiality
  4. DAvailability
Show answer & explanation

Correct answer: A. Authorization

Authorization is the process of determining what an authenticated entity is permitted to do or access. If former employees still have active accounts with access, their authorization is incorrect and potentially excessive, directly undermining the authorization principle.

Why the other options are wrong

  • B. Integrity concerns data accuracy and modification, which is not the primary issue here.
  • C. While confidentiality could be compromised if they access sensitive data, the core issue is their continued access rights, not necessarily data disclosure yet.
  • D. Availability ensures access for legitimate users, but this scenario is about illegitimate access.

Authorization

The process of determining what an authenticated entity (user, program, or process) is permitted to do or access.

  • Follows successful authentication.
  • Implemented using access control lists (ACLs), role-based access control (RBAC), etc.
  • Crucial for enforcing the principle of least privilege.

Memory trick: Authenticate who you are, Authorize what you can do, Account for what you did.

More Security Principles questions