200-201 Question 242
Single answerA security analyst is reviewing the logs of a company’s file server and notices that a non-critical configuration file has been accessed multiple times by an unauthorized user. Upon further investigation, it is confirmed that no sensitive data was accessed and the configuration file does not impact business operations. Which option best describes the impact of this incident?
- A
This incident has no impact since no sensitive data was compromised or operations were affected.
- B
This incident has a high impact due to unauthorized access to the file server.
- C
This incident has a moderate impact because it involved unauthorized access, even if the accessed file was non-critical.
- D
This incident has a low impact because the file was accessed without permission, but there are no operational consequences.
Show answer and explanation
Correct answer: D
Explanation
The correct answer is 'low impact' because while any unauthorized access could represent a security concern, the accessed file was non-critical, no sensitive data was involved, and there were no operational disruptions. Understanding the level of impact is crucial in prioritizing an incident response.
- A. Incorrect.
Incorrect. While sensitive data or operations were not impacted, unauthorized access itself should be considered, even if the impact is minimal.
- B. Incorrect.
Incorrect. The incident does not qualify as high impact since the accessed file is non-critical and there are no operational consequences.
- C. Incorrect.
Incorrect. Moderate impact would apply if the incident posed a potential risk to sensitive data or business operations, which is not the case here.
- D. Correct.
Correct. The incident has a low impact because unauthorized access occurred, but the file is non-critical and there are no operational or data security consequences.