Systems Security Certified Practitioner – SSCP – Question0113

Which of the following best ensures accountability of users for the actions taken within a system or domain?

A.
Identification
B. Authentication
C. Authorization
D. Credentials

Correct Answer: B

Explanation:

Details:
The only way to ensure accountability is if the subject is uniquely identified and authenticated. Identification alone does not provide proof the user is who they claim to be. After showing proper credentials, a user is authorized access to resources.
References: HARRIS, Shon, All-In-One CISSP Certification Exam Guide, McGraw-Hill/Osborne, 2002, Chapter 4: Access Control (page 126).