ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 351 - CAS-004 discussion

Report
Export

A global organization's Chief Information Security Officer (CISO) has been asked to analyze the risks involved in a plan to move the organization's current MPLS-based WAN network to use commodity

Internet and SD-WAN hardware. The SD-WAN provider is currently highly regarded but Is a regional provider. Which of the following is MOST likely identified as a potential risk by the CISO?

A.
The SD-WAN provider would not be able to handle the organization's bandwidth requirements.
Answers
A.
The SD-WAN provider would not be able to handle the organization's bandwidth requirements.
B.
The operating costs of the MPLS network are too high for the organization.
Answers
B.
The operating costs of the MPLS network are too high for the organization.
C.
The SD-WAN provider uses a third party for support.
Answers
C.
The SD-WAN provider uses a third party for support.
D.
Internal IT staff will not be able to properly support remote offices after the migration.
Answers
D.
Internal IT staff will not be able to properly support remote offices after the migration.
Suggested answer: C

Explanation:

SD-WAN (Software-Defined Wide Area Network) is a technology that allows organizations to use multiple, low-cost Internet connections to create a secure and dynamic WAN. SD-WAN can provide

benefits such as lower costs, higher performance, and easier management compared to traditional WAN technologies, such as MPLS (Multiprotocol Label Switching).

However, SD-WAN also introduces some potential risks, such as:

The reliability and security of the Internet connections, which may vary depending on the location, provider, and traffic conditions.

The compatibility and interoperability of the SD-WAN hardware and software, which may come from different vendors or use different standards.

The availability and quality of the SD-WAN provider’s support, which may depend on the provider’s size, reputation, and outsourcing practices.

In this case, the CISO would most likely identify the risk that the SD-WAN provider uses a third party for support, because this could:

Affect the organization’s ability to resolve issues or request changes in a timely and effective manner.

Expose the organization’s network data and configuration to unauthorized or malicious parties.

Increase the complexity and uncertainty of the SD-WAN service level agreement (SLA) and contract terms.

asked 02/10/2024
Akash Makkar
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first