Security Architecture
405 questions
An enterprise financial services organization is redesigning its hybrid cloud infrastructure to transition from a legacy perimeter security model to a Zero Trust Architecture (ZTA). The security architecture team must define mandatory implementation standards that adhere strictly to NIST SP 800-207 Zero Trust tenets. Which of the following architectural requirements must be enforced to align with Zero Trust principles? (Select TWO.)
Select all that apply
An autonomous vehicle research firm stores large volumes of sensor telemetry and machine learning datasets on distributed block storage arrays. The security team needs to protect data at rest against physical drive theft from the data center while minimizing processor performance impact on host hypervisors. Which of the following storage security controls best satisfies this requirement?
Match each Identity and Access Management (IAM) architectural protocol component to its corresponding enterprise security implementation requirement.
Click a left item, then click its matching right item
Items
Matches
A security engineer is documenting the automated failover process for an active-passive cluster of perimeter firewalls. When the primary node experiences an unrecoverable hardware failure, specific high-availability failover events must occur. Place the following operational steps in the correct chronological order from first to last.
Drag items to arrange them in the correct order
An organization is migrating its enterprise authentication framework to a modern cloud Identity Provider (IdP) supporting OpenID Connect (OIDC). However, several legacy internal web applications only support HTTP header-based authentication and cannot natively process OIDC tokens. Which of the following architectural components should be deployed between the legacy applications and the cloud IdP to translate federated identity assertions into secure local application headers?