Which confidentiality property states that information must not be disclosed to system entities unless they are authorized to access it?

Prepare for the FISMA Interview Test. Get familiar with key topics and enhance your knowledge with flashcards and multiple-choice questions. Study effectively and be ready for your exam!

Multiple Choice

Which confidentiality property states that information must not be disclosed to system entities unless they are authorized to access it?

Explanation:
Confidentiality means information is accessible only to those who are authorized to see it. The statement that information must not be disclosed to system entities unless they are authorized to access it captures that restriction on who can view the data, which is exactly what confidentiality requires. The other concepts relate to different goals: availability is about ensuring authorized users can access information when needed, and integrity is about preventing unauthorized modification of information. The idea of keeping information in confidence is related but does not as explicitly express the formal access-control requirement that defines confidentiality.

Confidentiality means information is accessible only to those who are authorized to see it. The statement that information must not be disclosed to system entities unless they are authorized to access it captures that restriction on who can view the data, which is exactly what confidentiality requires.

The other concepts relate to different goals: availability is about ensuring authorized users can access information when needed, and integrity is about preventing unauthorized modification of information. The idea of keeping information in confidence is related but does not as explicitly express the formal access-control requirement that defines confidentiality.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy