Related to information security, the prevention of the intentional or unintentional unauthorized disclosure ofcontents is which of the following?
A.
 Confidentiality
B.
 Integrity
C.
 Availability
D.
 capability
Explanation:
Confidentiality is the assurance that information is not disclosed to unauthorized individuals, programs, or
processes. Some information is more sensitive than other information and requires a higher level of
confidentiality.
Confidentiality ensures that the necessary level of secrecy is enforced at each junction of data processing and
prevents unauthorized disclosure. This level of confidentiality should prevail while data resides on systems and
devices within the network, as it is transmitted, and once it reaches its destination.
Incorrect Answers:
B: Integrity ensures that data is unaltered. This is not what is described in the question.
C: Availability ensures reliability and timely access to data and resources to authorized individuals. This is not
what is described in the question.
D: Capability is not the prevention of the intentional or unintentional unauthorized disclosure of contents.Harris, Shon, All In One CISSP Exam Guide, 6th Edition, McGraw-Hill, New York, 2013, p. 23