CISSP Practice Question: What would MOST likely happen if an organization fails to implement a…
Correct Answer: A. Increased security breaches
Explanation (CISSP Manager Logic):
Failing to manage the identity lifecycle creates "orphan accounts" and excessive privileges that attackers easily exploit. From a risk management perspective, the lack of formal offboarding and entitlement reviews directly increases the organization's attack surface and legal liability.
By implementing this solution, you:
- Reduce the risk of unauthorized access by former employees.
- Maintain the principle of least privilege throughout the user tenure.
- Ensure compliance with regulatory requirements for access control.
While the other options are relevant, they fall short because:
- B: User satisfaction may rise due to fewer restrictions, but it compromises the long-term security posture.
- C: Operational costs increase over time due to the high financial impact of breaches and manual auditing.
- D: Rapid onboarding without structure leads to "privilege creep" and inconsistent security controls.
Think like a manager:
Identity is the modern security perimeter; failing to govern its lifecycle is a failure of fundamental risk management. Managers must prioritize automated provisioning and deprovisioning to ensure accountability and protect corporate assets.
Ready to find out if you'd pass?
5,000+ expert-calibrated questions, adaptive CAT mock exams, and gap analysis that shows exactly what to study next.
Try 5 free questions Start 7-day free trial