Which category of access control is primarily represented by organizational policies?

Study for the PY103.16 Physical Security Test with flashcards and multiple-choice questions. Each question includes hints and explanations to help you prepare confidently and effectively. Get ready to ace your exam with our comprehensive study resources!

Multiple Choice

Which category of access control is primarily represented by organizational policies?

Explanation:
Organizational policies establish governance for how access is managed, including who can approve access, how access is granted and reviewed, and what duties and responsibilities people have. This is administrative controls—the policy and process layer that directs behavior and sets the rules for access. It provides the framework that technical and physical controls implement and enforce, rather than being the actual enforcement mechanism itself. Technical controls are the tools that enforce access (like authentication methods and access control lists), while physical controls are the barriers and devices that restrict entry. Procedural elements describe steps, but the policy-based governance that shapes those steps falls under administrative controls.

Organizational policies establish governance for how access is managed, including who can approve access, how access is granted and reviewed, and what duties and responsibilities people have. This is administrative controls—the policy and process layer that directs behavior and sets the rules for access. It provides the framework that technical and physical controls implement and enforce, rather than being the actual enforcement mechanism itself.

Technical controls are the tools that enforce access (like authentication methods and access control lists), while physical controls are the barriers and devices that restrict entry. Procedural elements describe steps, but the policy-based governance that shapes those steps falls under administrative controls.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy