Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 104 Topic 11 Discussion

Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 104 Topic 11 Discussion

CMMC-CCA Exam Topic 11 Question 104 Discussion:
Question #: 104
Topic #: 11

You are assessing Conedge Ltd, a contractor that develops cryptographic algorithms for classified government networks. In reviewing their network architecture documents, you see they have implemented role-based access controls on their workstations using Active Directory group policies. Software developers are assigned to the "Dev_Roles" group which grants access to compile and test code modules. The "Admin_Roles" group with elevated privileges for system administration activities is restricted to the IT staff. However, when you examine the event logs on a developer workstation, you find evidence that a developer was able to enable debugging permissions to access protected kernel memory – a privileged function. How should execution of the debugging permission be handled to align with AC.L2-3.1.7 – Privileged Functions?


A.

Require it to generate an email alert


B.

Perform automatic termination of the action


C.

Implement geo-IP blocking on the workstation


D.

Ensure it is logged to the central SIEM system


Get Premium CMMC-CCA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.