Skip to Content

CompTIA SY0-701: What Security Concept Restricts Access to Client Files Based on Employee Roles?

Confidentiality is the security concept that restricts access to sensitive data like client files only to authorized employees who need to know the information based on their specified roles within the company.

Table of Contents

Question

Client files can only be accessed by employees who need to know the information and have specified roles in the company. Which of the following best describes this security concept?

A. Availability
B. Confidentiality
C. Integrity
D. Non-repudiation

Answer

The security concept best described in the question is:

B. Confidentiality

Explanation

Confidentiality refers to protecting sensitive information from unauthorized access and disclosure. It ensures that data can only be accessed by authorized individuals.

In this scenario, client files contain sensitive information. Restricting access to only employees who need to know that information as part of their job responsibilities upholds the principle of confidentiality. Specifying access based on employee roles further enforces confidentiality by limiting access to the minimum necessary.

The other options do not fit as well:
A. Availability ensures systems and data are accessible to authorized users when needed. While important, it does not directly address restricting access.
C. Integrity protects data from unauthorized changes or tampering. It is a separate concern from confidentiality.
D. Non-repudiation provides proof of the origin and delivery of data to prevent parties from denying their actions. It does not relate to restricting file access.

Therefore, confidentiality is the fundamental security concept that best matches limiting sensitive client file access to only authorized employees who require that information for their roles. Doing so protects the data from unauthorized disclosure.

CompTIA SY0-701 certification exam assessment practice question and answer (Q&A) dump including multiple choice questions (MCQ) and objective type questions, with detail explanation and reference available free, helpful to pass the CompTIA SY0-701 exam and earn CompTIA SY0-701 certification.