FC0-U71 Security Practice Question
A security analyst discovers that a file on a server has been modified without authorization. Which element of the CIA triad has been compromised?
⚠ Common exam trap
FC0-U71 often tests the CIA triad by describing a scenario and asking which element is affected — candidates sometimes pick confidentiality for any 'unauthorized' action, but modification always maps to integrity.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Integrity
Integrity ensures that data has not been altered or tampered with in an unauthorized manner. Since the file was modified without authorization, the integrity of the data has been compromised, which is the definition of an integrity violation in the CIA triad.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Non-repudiation
Why it's wrong here
Non-repudiation is a property of cryptographic signatures and audit logging that prevents a party denying an action; it is not one of the CIA triad's three elements. The scenario describes unauthorised modification, which maps to integrity. Non-repudiation would be relevant when proving who sent a signed message.
- ✓
Integrity
Why this is correct
Integrity guarantees data remains unaltered unless changed by an authorised process. Because the file was modified without authorisation, its trustworthiness is broken, directly satisfying the scenario's unauthorised-modification constraint. Confidentiality concerns disclosure and availability concerns access, neither of which the stem describes.
- ✗
Availability
Why it's wrong here
Availability concerns whether authorised users can access systems and data when required, typically disrupted by denial-of-service, outages or ransomware. Modification of a file's contents leaves it readable, so access is unaffected. Availability would be the answer if the server had been taken offline or its data encrypted.
- ✗
Confidentiality
Why it's wrong here
Confidentiality concerns preventing unauthorised disclosure of data, breached by exfiltration, snooping or misconfigured permissions. The file here was altered, not read or copied, so secrecy is untouched. Confidentiality would be the correct element if the attacker had viewed or stolen the file's contents.
Go deeper
Related to this question
About these practice questions
Courseiva writes every FC0-U71 question from scratch — 988 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.