Which practice supports least-privilege access in Phreesia?

Explore the Phreesia Training Test. Prepare with quizzes featuring flashcards and multiple choice questions, each question includes hints and explanations. Excel in your exam!

Multiple Choice

Which practice supports least-privilege access in Phreesia?

Explanation:
Least-privilege access means giving users only the permissions they need to do their job and keeping those permissions tightly aligned with their current role. Regularly reviewing who has access in Phreesia and disabling accounts when they’re no longer needed puts that into practice. It directly reduces the chance of over-permission by removing access that isn’t necessary, helps prevent dormant or orphaned accounts from being exploited, and makes it easier to adjust permissions when someone’s responsibilities change. Other options don’t address this ongoing control: rotating passwords improves credential hygiene but doesn’t constrain what actions a user can take; never changing permissions allows privileges to accumulate beyond need; turning off audit logs reduces visibility for detecting misuse.

Least-privilege access means giving users only the permissions they need to do their job and keeping those permissions tightly aligned with their current role. Regularly reviewing who has access in Phreesia and disabling accounts when they’re no longer needed puts that into practice. It directly reduces the chance of over-permission by removing access that isn’t necessary, helps prevent dormant or orphaned accounts from being exploited, and makes it easier to adjust permissions when someone’s responsibilities change. Other options don’t address this ongoing control: rotating passwords improves credential hygiene but doesn’t constrain what actions a user can take; never changing permissions allows privileges to accumulate beyond need; turning off audit logs reduces visibility for detecting misuse.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy