What action does Configuration Control ensure during system implementation?

Prepare for the SANS Global Industrial Cyber Security Professional Exam. Test your skills with multiple choice questions featuring hints and explanations. Ensure your success with our comprehensive materials.

Configuration Control is a crucial aspect of system implementation because it focuses on managing and maintaining the integrity of system configurations throughout the development and operational phases. By ensuring that only authorized changes are made to the system, Configuration Control effectively prevents improper modifications. This includes monitoring changes to software, hardware, and associated documentation to protect the system from unapproved alterations that could lead to vulnerabilities, operational disruptions, or non-compliance with industry standards.

Maintaining control over configurations helps organizations reduce the risk associated with unvalidated or unauthorized changes that can compromise system security or operational effectiveness. This systematic approach ensures that any modifications are in line with predefined standards and that potential impacts are thoroughly assessed before implementation.

On the other hand, the other options focus on different aspects or imply actions that do not align with the primary purpose of Configuration Control. For instance, performing system upgrades immediately does not reflect careful consideration and planning which Configuration Control advocates. Creating security policies is a foundational task but does not pertain directly to the controlled management of current system configurations. Monitoring only network traffic does not encompass the broader scope of tracking and managing system configurations, which is the core function of Configuration Control.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy