200-201 Security Concepts Practice Question
A security team is reviewing the confidentiality, integrity, and availability (CIA) triad for a new file-sharing service. The service must ensure that data cannot be altered in transit by unauthorized parties. Which security principle is primarily addressed by implementing TLS for all connections?
⚠ Common exam trap
The trap here is focusing on the encryption aspect of TLS and selecting confidentiality, while overlooking that the scenario explicitly requires protection against unauthorized modification.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Integrity
The requirement to prevent unauthorized alteration of data in transit directly addresses the integrity principle of the CIA triad. TLS provides integrity through message authentication codes, ensuring that any modification is detected. While TLS also offers confidentiality, the scenario's emphasis on preventing alteration makes integrity the primary principle.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Integrity
Why this is correct
Integrity ensures that data is not modified by unauthorized parties. TLS uses message authentication codes and encryption to detect tampering, thereby preserving integrity of data in transit. The scenario explicitly states the requirement to prevent unauthorized alteration, which directly maps to the integrity principle of the CIA triad.
- ✗
Confidentiality
Why it's wrong here
Confidentiality ensures that data is not disclosed to unauthorized parties, and while TLS does provide encryption for confidentiality, the scenario specifically emphasizes preventing unauthorized alteration of data in transit, which is an integrity concern. The primary requirement described is integrity, not confidentiality.
- ✗
Non-repudiation
Why it's wrong here
Non-repudiation ensures that a party cannot deny having performed an action, often achieved through digital signatures, but the scenario is about preventing unauthorized alteration of data in transit, not about proving the origin of a message. TLS provides integrity and confidentiality, not non-repudiation.
- ✗
Availability
Why it's wrong here
Availability ensures that systems and data are accessible when needed, but TLS does not primarily address availability; it focuses on protecting data in transit from eavesdropping and modification. The scenario does not mention uptime or denial-of-service concerns, so availability is not the principle being addressed.
Go deeper
Related to this question
About these practice questions
One of 968 original 200-201 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Cisco exam blueprint
This 200-201 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 200-201 exam.