Webos's project failed due to the lack of segregation of duties during the maternity leave of the software development team leader. Which of the following is a threat that can impact Webos in this situation?

Prepare for the PECB Certified ISO/IEC 27001 Lead Auditor Exam with our comprehensive quiz. Test your knowledge with multiple-choice questions and detailed explanations. Get exam-ready!

In the given scenario, where the project failed due to a lack of segregation of duties while a key team member was on maternity leave, the situation creates a risk for unauthorized access or actions within the software development process. Without proper segregation of duties, there could be individuals who have too much access or authority, potentially leading to unauthorized use of the system. This is particularly concerning in environments that require careful controls to prevent malicious or accidental misuse.

The absence of proper controls might allow someone, possibly without the necessary permissions or oversight, to make changes to the software or access sensitive information. Such unauthorized actions could compromise the integrity of the project, leading to security vulnerabilities or flaws in the final product. Thus, unauthorized use directly outlines the threat to Webos given the context of the software project and oversight.

In contrast, failure to produce management reports and insufficient software testing focus on other operational failures that may arise from the lack of appropriate oversight, but they do not directly address the core issue of unauthorized actions that can arise from poor segregation of duties. Increased hardware needs generally pertain more to resource allocation and does not relate directly to the absence of duty segregation in the context presented.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy