Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 97 Topic 10 Discussion

Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 97 Topic 10 Discussion

CMMC-CCA Exam Topic 10 Question 97 Discussion:
Question #: 97
Topic #: 10

Examining an OSC password policy, you learn that a password should have a minimum of 15 characters. It also should have 3 uppercase, 2 special characters, and other alphanumeric characters. Passwords have to be changed every 45 days and cannot be easily tied to the account owner. Passwords cannot be reused until 30 cycles are complete. The OSC's systems send a temporary password to the user's email or authentication app, which is one of the events described in their password usage policy. However, a recent penetration test report shows that the generated temporary passwords did not have sufficient entropy, and an attacker may guess a temporary password through brute force attacks. Which CMMC practice has the contractor successfully implemented? Select all that apply.


A.

IA.L2-3.5.9 – Temporary Passwords


B.

IA.L2-3.5.7 – Password Complexity and IA.L2-3.5.8 – Password Reuse


C.

IA.L2-3.5.3 – Multifactor Authentication


D.

IA.L2-3.5.6 – Identifier Handling


Get Premium CMMC-CCA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.