An engineer moved to another team and is unable to access the new team's shared folders while still being able to access the shared folders from the former team. After opening a ticket, the engineer discovers that the account was never moved to the new group. Which of the following access controls is most likely causing the lack of access?
Choose an answer
Tap an option to check your answer.
Correct answer: Role-based.
Why this is the answer
Role-based access control (RBAC) assigns permissions based on a user's organizational role. In this scenario, the engineer's account was not moved to the new team's group, meaning they still have the role-based permissions of their old team and lack the permissions associated with their new team's role. Discretionary access control (DAC) allows resource owners to define permissions, which isn't the primary issue here as the problem is group membership, not individual file permissions. Time of day restrictions limit access during specific hours, which is unrelated to the team change. Least privilege is a principle of granting only necessary permissions, but it's not the access control model itself that's causing the problem; rather, it's the incorrect application of the RBAC model.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed