During a routine audit an analyst discovers that a departmen - CompTIA Security+ SY0-701

Question

During a routine audit, an analyst discovers that a department at a high school uses a simulation program that was not property vetted before deployment. Which of the following threats is this an example of?

Answers
  1. correct
Explanation

The correct answer is: C. Shadow IT.

Shadow IT occurs when employees or departments use hardware, software, or services without approval from the IT or security team. In this case, the high school department deployed a simulation program without proper vetting. This creates risks such as lack of security controls, unpatched vulnerabilities, and potential noncompliance. Shadow IT often bypasses established governance, leading to increased exposure to cyber threats, even if the program is used with good intentions.

Why Other Options are Incorrect:

  • A. Espionage
    Incorrect because espionage involves malicious actors stealing sensitive or confidential information for competitive, political, or strategic advantage. Installing an unauthorized program internally does not indicate external spying or covert information gathering.

  • B. Data exfiltration
    Incorrect because data exfiltration refers to unauthorized transfer of data outside the organization, often carried out by attackers. The scenario involves unauthorized software use, not the theft or extraction of sensitive data.

  • D. Zero-day
    Incorrect because a zero-day refers to exploiting an unknown software vulnerability before developers release a fix. The threat here is unauthorized deployment, not the exploitation of undiscovered flaws in a program.

No Payment Cards Needed

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA SecurityX CAS-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Network+ N10-009

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA CySA+ CSO-003

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Server+ SK0-005

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered