An enterprise security policy requires that any unauthorized changes to server system configurations are automatically detected and restored to a pre-approved security state. Which of the following operational controls best meets this requirement?
- Automated configuration management baseline enforcementAnswer
- BCentralized SIEM security audit log retention
- CHost-based firewall traffic filtering rules
- DScheduled manual patch deployment procedures
Answer
Automated configuration management baseline enforcement
Automated configuration management baseline enforcement continuously compares system settings against an established baseline and automatically remediates configuration drift by restoring approved settings.
Step-by-Step Solution
Key Concept
Configuration Drift and Automated Baseline Enforcement