CompTIA SecurityX Practice Questions: Access Control

6 free, exam-style CompTIA SecurityX (CAS-005) practice questions covering Access Control. Each question shows the correct answer and a clear explanation. Ready for the real thing? Take the full timed quiz below.

🚀 Take the full CompTIA SecurityX quiz 📘 CompTIA SecurityX study guide

Q1. What is the PRIMARY security benefit of using hardware security keys for MFA?

Explanation: Hardware keys use cryptographic proofs that can't be phished. Learn more.

Q2. Which of the following is MOST important when implementing passwordless authentication?

Explanation: FIDO2 provides phishing-resistant passwordless auth. Learn more.

Q3. A company wants employees to access multiple SaaS apps using the corporate identity provider. Which standard is commonly used for federation?

Explanation: SAML is commonly used for federated single sign-on between an identity provider and service providers. Learn more.

Q4. Which access control model evaluates attributes such as user role, device health, and location?

Explanation: Attribute-based access control makes authorization decisions from multiple subject, object, action, and environment attributes. Learn more.

Q5. Which privileged access approach grants administrator rights only when needed and for a limited time?

Explanation: Just-in-time privileged access reduces standing privileges by granting elevated rights only for approved sessions. Learn more.

Q6. Which control reduces blast radius when a production service account is compromised?

Explanation: Scoped permissions limit what a compromised identity can access or change. Learn more.

More CompTIA SecurityX practice topics