Enhance your CompTIA CASP+ exam readiness with our comprehensive quizzes. Sharpen your skills with detailed flashcards and multiple choice questions, each with hints and in-depth explanations. Prepare effectively for this challenging exam!

Practice this question and more.


Which major risk is associated with allowing IT staff to post work-related information on social networking sites?

  1. Malware infection

  2. Data exfiltration

  3. Account compromise

  4. Social engineering attacks

The correct answer is: Social engineering attacks

Allowing IT staff to post work-related information on social networking sites significantly increases the risk of social engineering attacks. When employees share work-related details, they inadvertently provide potential attackers with valuable information that can be exploited. This information can include insights into security protocols, access controls, or even system vulnerabilities. Attackers can use this knowledge to craft convincing tactics aimed at deceiving employees into revealing sensitive information or granting access to secure systems. Given the interconnected nature of today's digital environment, attackers may monitor social media to identify targets or gather intelligence, thereby increasing their chances of successfully executing social engineering tactics. While other risks like malware infection, data exfiltration, and account compromise may also be associated with the use of social media, the direct connection between the sharing of workplace information and the facilitation of social engineering attacks makes it the most pertinent risk in this scenario.