📚 Practice Mode

Application Security and ASAP Framework

Learn at your own pace with hints and detailed explanations

1 / 13
Multiple Choice

The principle of least privilege as it applies to Access control mandates that:

  1. Group based access control should be implemented to assign permissions to application users
  2. Consistent authorization checking should be performed on all application pages
  3. A set of all allowable actions should be defined for each user role and all other's denied
  4. All failed access authorization requests should be logged to a secure location for review by administrators