- Home
- All questions
- Question 366
CompTIA Security+ study material · question 366 of 611
Why should authorisation be checked on every request rather than cached for the session?
Show the answer
Answer: D. Because a revoked entitlement must take effect without waiting for the user to log out
A cached decision keeps working after the underlying entitlement has been removed.
Source: NIST SP 800-207 (NIST) — SP 800-207 § 2.1 Tenets