Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.

Exam CISSP Topic 2 Question 210 Discussion

Actual exam question for ISC's CISSP exam
Question #: 210
Topic #: 2
Which of the following BEST describes the purpose of the reference monitor when defining access control to enforce the security model?

Suggested Answer: D Vote an answer

The purpose of the reference monitor when defining access control to enforce the security model is to provide strong operational security to keep unit members safe. The reference monitor is an abstract concept that represents the mechanism that mediates all access requests between subjects and objects, and enforces the security policy defined by the security model. The reference monitor should be tamper-proof, always invoked, and verifiable. The reference monitor should ensure that only authorized and legitimate access requests are granted, and that any unauthorized or malicious access requests are denied or logged. The reference monitor should also protect the confidentiality, integrity, and availability of the system and the data. Quality design principles to ensure quality by design, policies to validate organization rules, and cyber hygiene to ensure organizations can keep systems healthy are not the purpose of the reference monitor, but rather the goals or the outcomes of the security program. References: CISSP CBK Reference, 5th Edition, Chapter 5, page
265; CISSP All-in-One Exam Guide, 8th Edition, Chapter 5, page 237

by whitebeard pirate at May 20, 2024, 02:14 PM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
whitebeard pirate
2024-05-20 14:14:57
B. Policies to validate organization rules
Enforcement of Access Control Policies: The reference monitor ensures that all access to data and resources is authorized according to predefined security policies. It validates every access request against these policies, ensuring that only authorized subjects can access or modify objects.
upvoted 1 times
...
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.