Access Control Models

Which of the following is used for identification?


The Brewer-Nash model is designed primarily to prevent?

Conflicts of interest

In which form of access control environment is access controlled by rules rather than by identity?


Which type of access control focuses on assigning privileges based on security clearance and data sensitivity?

MAC (Mandatory Access Control)

The Clark-Wilson model is primarily based on?

Controlled intermediary access applications

Which access control model manages rights and permissions based on job descriptions and responsibilities?

Role Based Access Control (RBAC)

Which of the following is the term for the process of validating a subject’s identity?


You have implemented an access control method that allows only users who are managers to access specific data. Which type of access control model is used?

RBAC (Role-based access control)

What form of access control is based on job descriptions?

Role-based access control (RBAC)

You have a system that allows the owner of a file to identify users and their permissions to the file. Which type of access control model is implemented

DAC (Discretionary Access Control)

Which is the star property of Bell-LaPadula?

No write down

Which of the following defines an object as used in access control?

Data, applications, systems, networks, and physical space.

Which form of access control enforces security based on user identities and allows individual users to define access controls over owned resources?

DAC (Discretionary Access Control)

Discretionary Access Control (DAC) manages access to resources using what primary element or aspect?


A remote access user needs gain access to resources on the server. Which of the process are performed by the remote access server to control access to resources?

Authentication and authorization

