CISM Certified Information Security Manager – Question0593

Which of the following is the MOST effective type of access control?

A.
Centralized
B. Role-based
C. Decentralized
D. Discretionary

Correct Answer: B

Explanation:

Explanation:
Role-based access control allows users to be grouped into job-related categories, which significantly cases the required administrative overhead. Discretionary access control would require a greater degree of administrative overhead. Decentralized access control generally requires a greater number of staff to administer, while centralized access control is an incomplete answer.