Question 1 of 30
In a corporate environment, a company implements Role-Based Access Control (RBAC) to manage user permissions across various departments. The IT department has a role that allows users to create, read, update, and delete (CRUD) user accounts, while the HR department has a role that allows users to read and update employee records but not delete them. If an employee from the IT department is temporarily assigned to assist the HR department, what is the most appropriate way to manage their access to ensure compliance with the principle of least privilege while still allowing them to perform necessary tasks?
Assign the employee a temporary HR role that includes read and update permissions for employee records, while ensuring their IT role remains intact but inactive during this period.
Allow the employee to retain their IT role and access all permissions, including CRUD operations on user accounts and read/update on employee records.
Create a new role that combines both IT and HR permissions, granting the employee full access to both systems.
Remove the employee's IT role entirely and assign them a full HR role for the duration of their assignment.

Preparing for CISCO 500-710 Video Infrastructure Implementation (VII)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free