A technician receives a call from a user who is on vacation. The user provides the necessary credentials and asks the technician to log in to the user's account and read a critical email that the user has been expecting. The technician refuses because this is a violation of the:
Acceptable use policy.
The technician's refusal to log in to the user's account is based on the acceptable use policy, which typically prohibits unauthorized access to user accounts, even with provided credentials. This policy is designed to protect user privacy and maintain the integrity of the system.
This policy outlines the proper use of technology resources and explicitly forbids unauthorized access to user accounts. By refusing to log in, the technician adheres to these guidelines, ensuring that user information remains confidential and secure.
While regulatory compliance is crucial in many industries, this scenario specifically involves the technician's adherence to internal policies rather than external regulations. Regulatory compliance may govern how data is handled but does not directly address the unauthorized access issue in this context.
A non-disclosure agreement (NDA) protects sensitive information from being disclosed but does not specifically cover the act of logging into a user’s account. The technician's actions are based on the acceptable use policy rather than concerns regarding confidentiality as outlined in an NDA.
Incident response procedures are designed for addressing security breaches or system failures, not for everyday operational policies regarding user account access. In this case, the technician’s decision is not related to managing an incident but rather adhering to standard acceptable use protocols.
In this scenario, the technician's refusal to access the user's account aligns with the acceptable use policy, which is established to protect user privacy and data integrity. Other options, though important in different contexts, do not directly relate to the technician’s ethical obligation to refrain from unauthorized access, highlighting the significance of internal policies in IT practices.
Related Questions
View allA user is unable to log in to the network. The network uses 802.1X wit...
A user reports that a newly installed application is not working corre...
An end user is experiencing issues with their email application not up...
A manager calls the help desk to ask for assistance with creating a mo...
Which of the following physical security controls can prevent laptops...
Related Quizzes
View allCompTIA A Plus Certification Exam
CompTIA A Plus Exam Questions
CompTIA A Plus Practice Exam
CompTIA CySA+ Cybersecurity Analyst Certification all in One Exam Guide
CompTIA Network Plus Certification Exam Quiz
CompTIA Security Plus Exam Answers
Free CompTIA Security Plus Practice Test
CompTIA Security Plus Simulation Questions
CompTIA Security Plus 501 Practice Questions
CompTIA Security Plus Example Questions
- ✓ 500+ Practice Questions
- ✓ Detailed Explanations
- ✓ Progress Analytics
- ✓ Exam Simulations