Community QuestionSeen on 8 CBTs

Separation of duties

Community-sourced. Answers may be wrong or out of date. Always verify with your official training portal before submitting. Not affiliated with any branch, agency, or vendor. Details.
Answer

This scenario describes separation of duties—not allowing the same person to hold two roles that, when combined, are sensitive. While two-person control is a similar concept, it does not apply in this case because the scenario does not say that either action requires the concurrence of two users.

Alternate answers seen on other CBTs

The same question shows up worded slightly differently across CBT versions. Here are the other answer variants we've indexed.

The practice of requiring that processes should be divided between two or more individuals; no one person in an organization should have the ability to control or close down a security activity

12 Principles Of Information Security

Distributing tasks and associated privileges among multiple people, primary objective to prevent fraud and errors

Cissp Flashcards Pdf

A means of establishing checks and balances against the possibility that critical systems or procedures can be compromised by rogue use of access permissions. It includes least privilege, SOPs, shared authority, auditing, mandatory vacations, and other policies.

Comptia Certmaster Practice For Network+

Prevents fraud by requiring more than one person to complete a critical process

Comptia Security+ Study Guide

When 2 or more employees split critical task functions

Legal And Privacy Issues In Information Security