ExamGecko
Question list
Search
Search

Question 388 - CISM discussion

Report
Export

Which of the following is the BEST defense-in-depth implementation for protecting high value assets or for handling environments that have trust concerns?

A.
Compartmentalization
Answers
A.
Compartmentalization
B.
Overlapping redundancy
Answers
B.
Overlapping redundancy
C.
Continuous monitoring
Answers
C.
Continuous monitoring
D.
Multi-factor authentication
Answers
D.
Multi-factor authentication
Suggested answer: A

Explanation:

Compartmentalization is the best defense-in-depth implementation for protecting high value assets or for handling environments that have trust concerns because it is a strategy that divides the network or system into smaller segments or compartments, each with its own security policies, controls, and access rules. Compartmentalization helps to isolate and protect the most sensitive or critical data and functions from unauthorized or malicious access, as well as to limit the damage or impact of a breach or compromise. Compartmentalization also helps to enforce the principle of least privilege, which grants users or processes only the minimum access rights they need to perform their tasks. Therefore, compartmentalization is the correct answer.

https://www.csoonline.com/article/3667476/defense-in-depth-explained-layering-tools-and-processes-for-better-security.html

https://www.fortinet.com/resources/cyberglossary/defense-in-depth

https://sciencepublishinggroup.com/journal/paperinfo?journalid=542&doi=10.11648/j.ajai.20190302.11

asked 01/10/2024
Diego Beltran
53 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first