Identity and Access Management (IAM)Easy

CISSP Practice Question: What would MOST likely happen if an organization fails to implement a…

Published August 25, 2026 · Free daily CISSP practice question
What would MOST likely happen if an organization fails to implement a comprehensive identity lifecycle management process?
  1. A.Increased security breaches
  2. B.Enhanced user satisfaction
  3. C.Lower operational costs
  4. D.Faster onboarding processes
Correct answer: A. Increased security breaches

Correct Answer: A. Increased security breaches

Explanation (CISSP Manager Logic):

Failing to manage the identity lifecycle creates "orphan accounts" and excessive privileges that attackers easily exploit. From a risk management perspective, the lack of formal offboarding and entitlement reviews directly increases the organization's attack surface and legal liability.

By implementing this solution, you:

  • Reduce the risk of unauthorized access by former employees.
  • Maintain the principle of least privilege throughout the user tenure.
  • Ensure compliance with regulatory requirements for access control.

While the other options are relevant, they fall short because:

  • B: User satisfaction may rise due to fewer restrictions, but it compromises the long-term security posture.
  • C: Operational costs increase over time due to the high financial impact of breaches and manual auditing.
  • D: Rapid onboarding without structure leads to "privilege creep" and inconsistent security controls.

Think like a manager:

Identity is the modern security perimeter; failing to govern its lifecycle is a failure of fundamental risk management. Managers must prioritize automated provisioning and deprovisioning to ensure accountability and protect corporate assets.

Ready to find out if you'd pass?

5,000+ expert-calibrated questions, adaptive CAT mock exams, and gap analysis that shows exactly what to study next.

Try 5 free questions Start 7-day free trial
← Previous question All questions