A public-works employee with legitimate GIS access copies sensitive infrastructure layers to personal media shortly before resigning. Which threat category does this primarily illustrate?
Select an answer to reveal the explanation.
Short Explanation
The danger here already had a badge and a map login. Insider threat is when trusted access turns sideways—copying GIS layers on the way out the door is not the same problem as a cold phishing email from outside.
Full Explanation
Insider threats involve personnel (or equivalent trusted parties) who misuse legitimate access and organizational knowledge. Copying sensitive GIS layers before resignation is a classic privileged-insider data-theft pattern. External phishing, unskilled external scanning, and shadow IT introduce different risk pathways that do not match authorized internal access abuse.