Study. uk . com
  1. Home
  2. All questions
  3. Question 18

CompTIA Security+ study material · question 18 of 611

A team draws a system's authorisation boundary very narrowly to reduce assessment effort. What is the main consequence?

  1. Dependencies fall outside the boundary and go unassessed
  2. Reciprocity can no longer be claimed
  3. The baseline will be selected at too high an impact level
  4. Continuous monitoring becomes mandatory
Show the answer

Answer: A. Dependencies fall outside the boundary and go unassessed

Too narrow a boundary leaves dependencies unexamined; too wide a boundary makes the assessment unmanageable.

Source: NIST SP 800-37 Rev. 2 (NIST) — SP 800-37 Rev. 2 › Appendix G, Authorization Boundary Considerations

Challenge yourself on this topic → Study as cards