ExamGecko
Question list
Search
Search

Related questions

Question 108 - CISA discussion

Report
Export

When an IS audit reveals that a firewall was unable to recognize a number of attack attempts, the auditor's BEST recommendation is to place an intrusion detection system (IDS) between the firewall and:

A.
the Internet.
Answers
A.
the Internet.
B.
the demilitarized zone (DMZ).
Answers
B.
the demilitarized zone (DMZ).
C.
the organization's web server.
Answers
C.
the organization's web server.
D.
the organization's network.
Answers
D.
the organization's network.
Suggested answer: A

Explanation:

When an IS audit reveals that a firewall was unable to recognize a number of attack attempts, the auditor's best recommendation is to place an intrusion detection system (IDS) between the firewall and the Internet, as this would provide an additional layer of security and alert the organization of any malicious traffic that bypasses or penetrates the firewall.Placing an IDS between the firewall and the demilitarized zone (DMZ), the organization's web server, or the organization's network would not be as effective, as it would only monitor the traffic that has already passed through the firewall.Reference:CISA Review Manual (Digital Version), Chapter 5, Section 5.4.3

asked 18/09/2024
Rehan Malik
51 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first