Question 1 of 30
A company is conducting an access review for its cloud-based applications to ensure that only authorized users have access to sensitive data. The review process involves evaluating user access rights, identifying any unnecessary permissions, and implementing remediation actions. During the review, it is discovered that a group of users has been granted access to a financial reporting tool that they no longer require for their current roles. What is the most effective approach to remediate this situation while ensuring compliance with the principle of least privilege?
Revoke access for the identified users and document the changes in the access review report.
Notify the users about the access change and allow them to retain access until they confirm they no longer need it.
Change the access level of the users to read-only instead of revoking access entirely.
Conduct a follow-up review in six months to determine if the access is still unnecessary.

Preparing for Microsoft SC-300 Microsoft Identity and Access Administrator? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free