ExamGecko
Question list
Search
Search

Related questions











Question 543 - CISA discussion

Report
Export

An IS auditor is reviewing the perimeter security design of a network. Which of the following provides the GREATEST assurance outgoing Internet traffic is controlled?

A.
Intrusion detection system (IDS)
Answers
A.
Intrusion detection system (IDS)
B.
Security information and event management (SIEM) system
Answers
B.
Security information and event management (SIEM) system
C.
Stateful firewall
Answers
C.
Stateful firewall
D.
Load balancer
Answers
D.
Load balancer
Suggested answer: C

Explanation:

A stateful firewall provides the greatest assurance that outgoing Internet traffic is controlled, as it monitors and filters packets based on their source, destination and connection state. A stateful firewall can prevent unauthorized or malicious traffic from leaving the network, as well as block incoming traffic that does not match an established connection. An intrusion detection system (IDS) can detect and alert on suspicious or anomalous traffic, but it does not block or control it. A security information and event management (SIEM) system can collect and analyze logs and events from various sources, but it does not directly control traffic.A load balancer can distribute traffic among multiple servers, but it does not filter or monitor it.Reference:CISA Review Manual (Digital Version), Chapter 6, Section 6.2

asked 18/09/2024
Yuri Mitrofanov
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first