Which Control Represents Operational Security in Project+?

Which of the following would be considered operational security?

  1. Mobile device compliance
  2. Background screening Source Reference Answer
  3. Multifactor authentication
  4. Facility access

Community Votes

B
75%
D
25%

75% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

Tests the ability to categorize security measures, with the common trap being the misclassification of physical access controls as operational procedures.

This question evaluates your understanding of security control classifications within the CompTIA Project+ framework. Community analysis confirms that background screening is classified as operational security, distinguishing it from physical and digital controls.

Facility access (D) is the most frequent incorrect choice, as candidates often assume all security guarding and entry controls are operational, whereas Project+ strictly defines them as physical security.

Community Discussion (7 comments)

rbrad2100 👍 7
B: background screening • Physical security - Mobile device considerations - Removable media considerations - Facility access • Operational security - Background screening - Clearance requirements • Digital security - Resource access and permissions - Remote access restrictions - Multifactor authentication
044f354 👍 1 Selected: B
CompTIA Project+ Study Guide, 3rd Edition Chapter 7: Defining the Project Budget and Risk Plans "Operational security includes policies for performing background checks and security clearances."
joe99999 👍 1 Selected: B
A: Endpoint C: Access and Identity D: Physical
420swaglord 👍 3 Selected: B
B: Background screening From the Sybex book (page 243): "Operational security includes policies for performing background checks and security clearances. The policy in this case should define the types of roles and responsibilities that require either a background check or a security clearance."
BlueMan93 👍 1 Selected: B
rbrad2100 is spot on
Therealjosh 👍 1
this could be both A and D
Therealjosh 👍 2 Selected: D
D. Facility access Operational security involves measures taken to ensure the physical security of facilities, equipment, and assets. Facility access controls, such as locks, access badges, security guards, and surveillance systems, are essential components of operational security. These measures help prevent unauthorized access to physical locations, protecting sensitive information, assets, and personnel within the facility. While options A, B, and C are all important aspects of security, they are more closely related to information security or cybersecurity rather than operational security. Mobile device compliance, background screening, and multifactor authentication are measures typically implemented to protect data, systems, and networks from unauthorized access, breaches, or misuse.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

In the CompTIA Project+ curriculum, operational security focuses on processes, policies, and personnel management rather than hardware or software controls. Background screening and security clearance requirements are explicitly categorized under operational security because they govern human risk and organizational trust frameworks. As highlighted in community discussions, official study guides directly list background checks and clearances under this domain to protect project resources [2][4].

Why the Other Options Are Wrong

Mobile device compliance (A) falls under endpoint or digital security, focusing on device configuration and policy enforcement. Multifactor authentication (C) is a logical access control mechanism used to verify user identity electronically. Facility access (D) is classified as physical security, encompassing locks, badges, guards, and surveillance systems that protect tangible locations [5].

Community Comment Notes

Commenters consistently reference the Sybex study guide to validate the classification, noting that operational security specifically covers background checks and clearances [2]. Several users provided a helpful mental model separating physical, operational, and digital security domains for quick exam recall [1]. While some debated facility access as operational due to its procedural nature, the consensus clarifies that Project+ reserves this category strictly for physical safeguards [7].

Official Reference

Exam Strategy

When tackling security domain questions, quickly categorize each option into physical (locations/hardware), operational (people/processes/policies), or logical (systems/data/access). This systematic mapping prevents confusion with real-world IT practices that often blend these categories, ensuring you align strictly with CompTIA's defined framework.

Related Analysis

Practice All PK0-005 Questions

Access 102 questions with complete answers and detailed explanations.

View Full PK0-005 Practice Test →

← Back to PK0-005 Study Guide