Courseiva
mediumMultiple ChoiceObjective-mapped

220-1102 Practice Question: A user calls the help desk because they cannot…

A user calls the help desk because they cannot access a shared folder on the network. The user's account is part of the 'Sales' group, which has 'Read' permission, but the user needs to modify files. What is the most efficient way to grant the required access?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Add the user to a group that has 'Modify' permission

Adding the user to a group with 'Modify' permissions is efficient because it avoids individual permission assignments and follows the principle of group-based access control. This ensures the user can edit files without overcomplicating permissions.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Assign 'Full Control' to the user's account directly

    Why it's wrong here

    Assigning 'Full Control' directly to a user's account is a significant security risk and violates the principle of least privilege. This permission level grants the user the ability to read, write, execute, delete, change permissions, and even take ownership of the folder. Providing such extensive access is rarely justified for typical user tasks and could lead to unauthorized modifications of security settings or accidental data corruption.

  • Add the user to a group that has 'Modify' permission

    Why this is correct

    Adding the user to an existing or new group that possesses 'Modify' permission is the most appropriate and secure solution. 'Modify' permission allows the user to read, write, execute, and delete files and subfolders, which directly addresses the need to make changes. This method adheres to the principle of least privilege by granting only the necessary access and simplifies administration through efficient group-based security management.

  • Change the folder's sharing settings to 'Everyone' with 'Read/Write'

    Why it's wrong here

    Changing the folder's sharing settings to 'Everyone' with 'Read/Write' permissions creates a severe security vulnerability. This action would grant unrestricted access to the folder's contents for all users on the network, regardless of their specific role or need. Such broad access is highly insecure, violates data confidentiality, and is an inefficient solution for addressing a single user's specific access requirement.

  • Remove the user from the Sales group and add them to a new group with 'Read' permission

    Why it's wrong here

    Removing the user from their existing Sales group and then adding them to a new group with only 'Read' permission is counterproductive. This action would revoke any existing access the user might have had through the Sales group and would still fail to provide the necessary 'Modify' permissions. Consequently, the user would remain unable to make required changes to the files, leaving the original problem unresolved and potentially causing further disruption.

About these practice questions

Courseiva writes every 220-1202 question from scratch — 495 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.