A security technician is configuring operating system baseline settings for a workstation that will be deployed to a high-security research facility. The workstation must adhere to the principle of least functionality by reducing unnecessary network-facing vulnerabilities before network placement. Which of the following workstation hardening practices directly accomplishes this objective?
- Disabling unneeded background services and unrequired OS features to minimize the system attack surface.Answer
- BInstalling physical cable locks and privacy screens to block unauthorized network traffic and protocol inspection.
- CConfiguring Event Viewer MMC snap-in to actively block incoming port connection requests.
- DModifying Indexing Options in Control Panel to inspect and filter network traffic crossing local directories.
Answer
Disabling unneeded background services and unrequired OS features to minimize the system attack surface.
Disabling unnecessary background OS services, applications, and ports directly implements system hardening by enforcing the principle of least functionality. Reducing running components minimizes the potential attack surface available to unauthorized network actors.
Step-by-Step Solution
Key Concept
Workstation Hardening via Service Reduction
Estimated Time:1m 15s