Security+ Exam Question: Controls to Curtail Password Change Alerts

Preventing Password Change Alerts | Accounting Department | SY0-601

Prev Question Next Question

Question

The help desk is receiving numerous password change alerts from users in the accounting department.

These alerts occur multiple times on the same day for each of the affected users' accounts.

Which of the following controls should be implemented to curtail this activity?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

D.

Based on the information provided, it appears that someone is attempting to change the passwords of multiple user accounts in the accounting department. This could be due to a number of reasons, such as an unauthorized person trying to gain access to sensitive information or a malicious insider trying to cause chaos.

To curtail this activity, the organization should consider implementing the Password History control. Password History refers to a security policy that prohibits users from reusing their old passwords. In other words, once a password has been used, it cannot be reused again in the future.

By enforcing Password History, the organization can prevent attackers from cycling through previously used passwords in an attempt to gain access to user accounts. This control can also prevent users from using the same or similar passwords over and over again, which can make it easier for attackers to crack the passwords through brute force or other means.

It's important to note that Password History should be used in conjunction with other password controls, such as Password Complexity and Password Minimum Age. Password Complexity requires users to create passwords that are difficult to guess, such as by including a mix of upper- and lowercase letters, numbers, and special characters. Password Minimum Age requires users to wait a certain amount of time before changing their password again, which can help prevent users from cycling through passwords too quickly.

In summary, the Password History control should be implemented to curtail the activity of multiple password change alerts in the accounting department. This control, along with Password Complexity and Password Minimum Age, can help improve overall password security and prevent unauthorized access to sensitive information.