Which of the following statements regarding segregation of duties is true?
Which of the following statements regarding segregation of duties is true?
Policies on segregation of duties in information systems must recognize the difference between logical and physical access to assets. Logical access involves access through software and data permissions, while physical access involves access to the physical components, such as hardware and facilities. Understanding and managing both types of access is crucial for effective security and control within an organization.
Why D?
If the doubt is between C and D, it is not C because when a policy is restrictive it leaves less room of manouvre (in this case communication). You need to do like that and that's it.