You are a security consultant for a contracting agency the a
You are a security consultant for a contracting agency; the agency chief wants to ensure he prevents subjects from writing information to a higher level than the subject’s security clearance. He also wants to ensure subjects from a higher level clearance cannot read information at a lower level. They require some type of access control models for their information systems to protect the integrity of their data. What is your best recommendation for a model to use?
A. Bell LaPadula
B. Biba
C. State Machine
D. Clark Wilson
Solution
B. TThe Biba model is integrity based and will not allow a subject to write to a higher security level or read to a lowed security level. Answer A is the Bell LaPadula model and is based on confidentiality. Answer C the State Machine model seeks to see if one state before moving to another. Answer D the Clark-Wilson model is an integrity model ans is designed to address all goals of integrity
