An organization notices that several corporate laptops used by remote employees have failed to apply a critical operating system security patch dispatched by the patch management server. Investigation reveals that the employees continuously opted to defer the required system restart, causing their devices to fall out of compliance with the enterprise security configuration baseline. Which of the following technical controls would most effectively enforce compliance and ensure the required patch installation before granting endpoints access to internal network resources?
- Configure Network Access Control posture assessment policies to isolate non-compliant devices to a remediation network until the update is installed.Answer
- BDeploy a perimeter Web Application Firewall rule to inspect and block unauthorized traffic targeting the remote endpoints.
- CRevert the non-compliant endpoints to a pre-patch system restore point to eliminate pending restart requests.
- DImplement a deterrent security awareness campaign requesting users to restart their systems within 24 hours.
Answer
Configure Network Access Control posture assessment policies to isolate non-compliant devices to a remediation network until the update is installed.
Network Access Control (NAC) posture assessment performs pre-admission or continuous checks on connecting devices to verify compliance with configuration baselines (such as installed OS patches and updates). Devices failing posture checks are placed in a quarantined or remediation network segment where required updates can be completed before full network access is granted.
Step-by-Step Solution
Key Concept
Endpoint Posture Assessment and Remediation via Network Access Control (NAC)
Estimated Time:1m 30s