Cisco CyberOps Associate (CBROPS) 200-201Security Policies and ProceduresMedium
An organization is auditing its security procedures. It discovers that while there is a written policy requiring multi-factor authentication (MFA) for all remote access, many employees are circumventing it by using older, unpatched VPN clients that do not enforce MFA. What type of security control failure does this scenario represent?
- ACompensating Control Failure
- BPreventative Control Failure
- CDeterrent Control Failure
- DDetective Control Failure
Show answer & explanationAnswer & explanation
Correct answer: B. Preventative Control Failure
MFA is a preventative control designed to stop unauthorized access by verifying user identity. Its circumvention means this preventative measure is failing to prevent the intended action.
Why the other options are wrong
- A. Compensating controls are alternative measures used when a primary control cannot be implemented or is insufficient.
- C. Deterrent controls discourage attacks but don't prevent them directly (e.g., warning signs).
- D. Detective controls identify incidents after they have occurred (e.g., intrusion detection systems).
Preventative Security Control
A security control designed to prevent unauthorized or undesirable actions from occurring.
- Aims to stop incidents before they start.
- Examples include firewalls, access controls, encryption.
- Effectiveness depends on proper implementation and enforcement.
Memory trick: Prevent, Detect, Correct, Deter, Compensate.