Which type of control requires multiple parties in order for a critical transaction to be performed?

A.
Separation of duties
B.
Rotation of duties
C.
Principle of least privilege
D.
Need to know
Explanation:
Answer A is correct; separation of duties involves splitting critical transactions across multiple parties such that one person does not wield too much power.Incorrect Answers and Explanations: B, C, and D: Answers B, C, and D are incorrect. Rotation of duties is the closest wrong answer because it involves multiple parties, but not at the same time to carry out a single transaction. Both principle of least privilege and need to know can be guiding principles for controlling access to data, but neither specifically require two parties to achieve the minimum access.
Separation of duties
0
0