A System programmer have access to computer room, it is
possible that he may undertake some unauthorised activities
at any time, due to his deep knowledge how can a control
build to avoid the risk?

Answers were Sorted based on User's Feedback



A System programmer have access to computer room, it is possible that he may undertake some unauth..

Answer / kavish

Probably use a Keylogger , on every system !
whenever the programmer presses the keys of keyboard the
operations are stored in keylogger..
hence the surveillance system can be used ..

Is This Answer Correct ?    8 Yes 0 No

A System programmer have access to computer room, it is possible that he may undertake some unauth..

Answer / beginner

Limitation Of Access for the user, log generator should be
implemented in order to view the activities of the user.
Configuring proper firewalls nd blocking the unused ports.
Configuring the router by giving limited access to the user
are some of the ways

Is This Answer Correct ?    0 Yes 0 No

A System programmer have access to computer room, it is possible that he may undertake some unauth..

Answer / nimesh maru

This is answered with the CISSP perspective.
implement 1] Seperation of Duties : This will make sure that
one individual cannot complete a critical task by himself.
so we would have 2 ,3 or 4 people doing the 1 task.
Now if they want to do something malicious or unathorized
they all would have to come together to perform the task,
which detters the person from doing it. This act of all
people coming together to complete the task is also called
Collusion.

Further Seperation of duties shall be broken down in to
Split Know ledge and Dual Control.
Split Knowledge : No one person has complete knowledge of
performing one task or required information.
Dual control : here 2 or more individuals must be present
and active in participation to complete the task.

2]Job rotation : No One person should stay in one position
for long period of time as they would then have good
knowledge and would know inside out of entire process and
would be able to bypass or circumvent controls put in place
for the santity of the process and compliance.

Is This Answer Correct ?    1 Yes 2 No

Post New Answer

More Networking Security Interview Questions

What is mesh network

0 Answers   Elgi Equipments,


What is an information security management system (isms)?

0 Answers  


What is a security policy?

1 Answers   Airtel, Techworld,


what is the difference between firewall and antivirus?

2 Answers   IL&FS Infrastructure Leasing Financial Services, Sitel,


What is classful and classless routing?

0 Answers  






What is intrusion prevention systems (ips)?

0 Answers  


What is ospf protocol

0 Answers  


What are the data units at different layers of the TCP / IP protocol suite

0 Answers   Elgi Equipments,


My System Loaded Cyber Crome ,Whom i can't Access proper Internet , so plz give me some idea .whom i will can access proper internet .my e mail id amit.amitsharma21@gmail.com

1 Answers  


Where do you get updates on security?

0 Answers  


I want to reset the passwords of 100 users.how do you do it?

1 Answers   iGate,


What is a DNS resource record

0 Answers  


Categories
  • Networking Protocols Interview Questions Networking Protocols (671)
  • Networking Administration Interview Questions Networking Administration (1008)
  • Networking Security Interview Questions Networking Security (196)
  • Networking General Interview Questions Networking General (266)
  • Networking AllOther Interview Questions Networking AllOther (430)