CompTIA Security+ Question C-52

A new network administrator is setting up a new file server for the company. Which of the following would be the BEST way to manage folder security?

A. Assign users manually and perform regular user access reviews
B. Allow read only access to all folders and require users to request permission
C. Assign data owners to each folder and allow them to add individual users to each folder
D. Create security groups for each folder and assign appropriate users to each group

Answer: D

Explanation:
Creating a security group for each folder and assigning necessary users to each group would only allow users belonging to the folder’s security group access to the folder. It will make assigning folder privileges much easier, while also being more secure.

CompTIA A+ Core 2 Question E-15

Peter, an employee, has just migrated from the Marketing department to the Accounting department and cannot save files to the Accounting share. He is a member of both the Marketing and Accounting security groups. A technician discovers the following permissions are in effect for the Accounting share:
Share permissions: Everyone Full Control
NTFS permissions: Accounting Full Control, Marketing Deny All.

Which of the following should the technician do to enable Peter to save files to the Accounting share without compromising security?

A. Remove Joe from the Marketing group
B. Ask Joe to resave the file, as the permissions are correct
C. Grant the Accounting group Full Control share permissions
D. Remove the Deny permission for the Marketing group

Correct Answer: A