ISC2 Certified in Cybersecurity (CC)Security PrinciplesMedium
A financial services company processes millions of transactions daily. To ensure that each transaction can be undeniably linked to the specific user who initiated it, preventing them from later denying their actions, which security principle must be enforced?
- AAvailability
- BNon-repudiation
- CConfidentiality
- DIntegrity
Show answer & explanationAnswer & explanation
Correct answer: B. Non-repudiation
Non-repudiation ensures that a party cannot deny having sent a message or performed an action. In financial transactions, this is crucial for accountability and legal enforceability.
Why the other options are wrong
- A. Availability ensures that systems are accessible when needed.
- C. Confidentiality protects information from unauthorized disclosure.
- D. Integrity ensures that data has not been altered or destroyed in an unauthorized manner.
Non-repudiation
The assurance that someone cannot deny the validity of something. It ensures that a party cannot deny having sent a message or performed an action.
- Provides proof of origin and integrity.
- Often achieved through digital signatures and logging.
- Crucial for legal and financial accountability.
Memory trick: CIA: Confidentiality, Integrity, Availability. Then Authenticity, Authorization, Accounting, Non-repudiation.