ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 558 - SY0-601 discussion

Report
Export

A large industrial system's smart generator monitors the system status and sends alerts to third-party maintenance personnel when critical failures occur. While reviewing the network logs, the company's security manager notices the generator's IP is sending packets to an internal file server's IP. Which of the following mitigations would be best for the security manager to implement while maintaining alerting capabilities?

A.
Segmentation
Answers
A.
Segmentation
B.
Firewall allow list
Answers
B.
Firewall allow list
C.
Containment
Answers
C.
Containment
D.
Isolation
Answers
D.
Isolation
Suggested answer: A

Explanation:

Segmentation is a security technique that divides a network into smaller subnetworks or segments based on criteria such as function, role, location, etc. Segmentation can help mitigate the risk of unauthorized access or data leakage by isolating different segments from each other and applying different security policies and controls to each segment. Segmentation can help the security manager to implement a mitigation while maintaining alerting capabilities by separating the smart generator from the internal file server and allowing only necessary communication between them.

asked 02/10/2024
Justin NJOCK
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first