← All CSC Flashcard Decks

Access Control & Perimeter Security Flashcards

7 cards from real CSC practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Access Control & Perimeter Security flashcards as text
  1. A security consultant is performing a gap analysis on a client's access control system. Which standard provides the MOST comprehensive framework for physical and environmental security controls?

    Answer: Both NIST SP 800-53 PE controls and ISO/IEC 27001 Annex A.11

    Both NIST SP 800-53 (Physical and Environmental Protection family) and ISO 27001 Annex A.11 provide comprehensive physical/environmental security control frameworks.

  2. What is the security risk of 'door prop' alerts being consistently ignored by security staff?

    Answer: It normalizes alarm fatigue, allowing genuine intrusion events to go unaddressed

    Alarm fatigue causes security personnel to ignore or delay responding to alarms because of too many false or nuisance alerts, creating real security gaps.

  3. A data center is implementing a layered access control strategy. In what correct order should the security layers be arranged from outermost to innermost?

    Answer: Property perimeter → building lobby → data hall → server cage

    Defense-in-depth applies concentric layers from the property perimeter inward through the building lobby, data hall, and finally the server cage.

  4. Which technology uses a network of underground sensors that detect pressure and vibration changes caused by footsteps or digging near a perimeter?

    Answer: Seismic/geophone detection systems

    Seismic/geophone sensors detect ground vibrations from footsteps, digging, or vehicles and are buried to make them covert and tamper-resistant.

  5. A retail bank wants to restrict teller area access to employees only. The MOST appropriate access control solution that also provides an audit trail is:

    Answer: Proximity card readers integrated with an access control management system

    Proximity card readers tied to an access control management system grant individual credentials and log every entry/exit event for audit purposes.

  6. What is 'piggyback detection' in the context of electronic access control, and how is it typically implemented?

    Answer: Using weight or optical sensors in a mantrap to detect more than one person passing per credential read

    Piggyback detection uses sensors (optical beams, pressure plates, or video analytics) inside a mantrap to detect if more than one person entered per authorized credential use.

  7. When assessing the adequacy of perimeter security for a critical infrastructure facility, a CSC should evaluate which combination of factors?

    Answer: Guard staffing levels, technology systems, physical barriers, and response protocols holistically

    A comprehensive perimeter security assessment must evaluate all layers — physical barriers, detection technology, human resources, and response capabilities — as an integrated system.