When revoking a user’s access, why should audit trails be updated?

Prepare for the DPAS 1020 Customization Test with multiple choice questions, flashcards, and explanations. Enhance your understanding and get ready to excel!

Multiple Choice

When revoking a user’s access, why should audit trails be updated?

Explanation:
Updating audit trails when a user’s access is revoked maintains traceability of who changed permissions, when it happened, and what was changed. This creates a complete record that security teams can rely on to verify that revocation occurred promptly and correctly, hold approvers and administrators accountable, and investigate any incidents. It also satisfies compliance and governance requirements that require auditable evidence of access control changes, making audits and reporting straightforward. Without updating the trail, there can be ambiguity about whether and when access was removed, which weakens security posture and oversight. The other options don’t support traceability or governance in the same essential way.

Updating audit trails when a user’s access is revoked maintains traceability of who changed permissions, when it happened, and what was changed. This creates a complete record that security teams can rely on to verify that revocation occurred promptly and correctly, hold approvers and administrators accountable, and investigate any incidents. It also satisfies compliance and governance requirements that require auditable evidence of access control changes, making audits and reporting straightforward. Without updating the trail, there can be ambiguity about whether and when access was removed, which weakens security posture and oversight. The other options don’t support traceability or governance in the same essential way.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy