Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Cybersecurity FundamentalsEasy

An organization is preparing for a compliance audit and needs to ensure that all sensitive data stored on their servers is protected from unauthorized viewing, even if an attacker gains access to the storage. This requires that the data is scrambled and unreadable without a specific key. Which cybersecurity principle is being primarily addressed in this scenario?

  1. AIntegrity
  2. BConfidentiality
  3. CAvailability
  4. DNon-repudiation
Show answer & explanation

Correct answer: B. Confidentiality

Ensuring data is protected from unauthorized viewing and is unreadable without a key directly addresses the principle of Confidentiality, which aims to prevent disclosure of sensitive information to unauthorized individuals.

Why the other options are wrong

  • A. Integrity ensures data has not been altered or tampered with.
  • C. Availability ensures systems and data are accessible when needed.
  • D. Non-repudiation ensures an action cannot be denied by the perpetrator.

Confidentiality

The principle of ensuring that information is accessible only to those authorized to have access, often achieved through encryption and access controls.

  • Prevents unauthorized disclosure.
  • Achieved via encryption, access control.
  • Part of the CIA triad.

Memory trick: CIA: Confidentiality, Integrity, Availability.

More Cybersecurity Fundamentals questions