IST 266 Test 4 – Greenville Tech Practice Questions, Study Guide & Exam Review
2026
Access Control - ANS ✔✔The mechanism used in an information system for granting or denying
approval to use specific resources.
Access Control Entry (ACE) - ANS ✔✔Entries in an access control list containing information
describing the access rights related to a particular security identifier or user.
Attribute - ANS ✔✔Based Access Control (ABAC) - An access control model that uses more
flexible policies that can combine attributes.
Authentication, Authorization, and Accounting (AAA) - ANS ✔✔A system for tracking user
activities on an IP-based network and controlling their access to network resources.
Authorization - ANS ✔✔Granting permission to take an action.
Bell - ANS ✔✔LaPadula (BLP) Model - A model for enforcing access control in government and
military applications.
Challenge - ANS ✔✔Handshake Authentication Protocol (CHAP) - A weak version of Extensible
Authentication Protocol (EAP).
Data Custodian - ANS ✔✔Individual to whom day- to-day actions have been assigned by the
owner.
Data Owner - ANS ✔✔A person responsible for the information.
, Database Security - ANS ✔✔Security functions provided by access control lists (ACLs) for
protecting SQL and relational database systems.
Employee Offboarding - ANS ✔✔The tasks associated when an employee is released from the
enterprise.
Employee Onboarding - ANS ✔✔The tasks associated when hiring a new employee.
File System Security - ANS ✔✔Security functions provided by access control lists (ACLs) for
protecting files managed by the operating system.
Group Policy Objects (GPO) - ANS ✔✔A collection of settings that define what a system will look
like and how it will behave for a defined group of users.
Group - ANS ✔✔Based Access Control - Configuring multiple computers by setting a single
policy for enforcement.
Identification - ANS ✔✔Credentials presented by a user accessing a computer system.
Job Rotation - ANS ✔✔The act of moving individuals from one job responsibility to another.
Kerberos - ANS ✔✔An authentication system developed by the Massachusetts Institute of
Technology (MIT) and used to verify the identity of networked users.
Legacy Applications - ANS ✔✔An old method, technology, computer system, or application
program.
Mandatory Access Control (MAC) - ANS ✔✔The most restrictive access control model, typically
found in military settings in which security is of supreme importance.
2026
Access Control - ANS ✔✔The mechanism used in an information system for granting or denying
approval to use specific resources.
Access Control Entry (ACE) - ANS ✔✔Entries in an access control list containing information
describing the access rights related to a particular security identifier or user.
Attribute - ANS ✔✔Based Access Control (ABAC) - An access control model that uses more
flexible policies that can combine attributes.
Authentication, Authorization, and Accounting (AAA) - ANS ✔✔A system for tracking user
activities on an IP-based network and controlling their access to network resources.
Authorization - ANS ✔✔Granting permission to take an action.
Bell - ANS ✔✔LaPadula (BLP) Model - A model for enforcing access control in government and
military applications.
Challenge - ANS ✔✔Handshake Authentication Protocol (CHAP) - A weak version of Extensible
Authentication Protocol (EAP).
Data Custodian - ANS ✔✔Individual to whom day- to-day actions have been assigned by the
owner.
Data Owner - ANS ✔✔A person responsible for the information.
, Database Security - ANS ✔✔Security functions provided by access control lists (ACLs) for
protecting SQL and relational database systems.
Employee Offboarding - ANS ✔✔The tasks associated when an employee is released from the
enterprise.
Employee Onboarding - ANS ✔✔The tasks associated when hiring a new employee.
File System Security - ANS ✔✔Security functions provided by access control lists (ACLs) for
protecting files managed by the operating system.
Group Policy Objects (GPO) - ANS ✔✔A collection of settings that define what a system will look
like and how it will behave for a defined group of users.
Group - ANS ✔✔Based Access Control - Configuring multiple computers by setting a single
policy for enforcement.
Identification - ANS ✔✔Credentials presented by a user accessing a computer system.
Job Rotation - ANS ✔✔The act of moving individuals from one job responsibility to another.
Kerberos - ANS ✔✔An authentication system developed by the Massachusetts Institute of
Technology (MIT) and used to verify the identity of networked users.
Legacy Applications - ANS ✔✔An old method, technology, computer system, or application
program.
Mandatory Access Control (MAC) - ANS ✔✔The most restrictive access control model, typically
found in military settings in which security is of supreme importance.