An enterprise network operations center is aligning its infrastructure security framework with Cisco security baseline recommendations. Match each security program element or access control type on the left to its corresponding operational implementation on the right.
- Physical Access ControlDeploying biometric scanners, badge readers, and mantrap portals to secure entry into data centers.
- Security Awareness TrainingConducting regular user education sessions regarding phishing risks, password hygiene, and tailgating prevention.
- Incident Response PlanDefining structured escalation workflows and containment procedures to follow immediately after a security event.
- Administrative Policy ControlEstablishing formal corporate documentation defining acceptable use policies and password requirements.
Cevap
Physical Access Control pairs with biometric scanners and mantrap portals; Security Awareness Training pairs with user education on phishing and tailgating; Incident Response Plan pairs with structured escalation workflows and containment procedures; Administrative Policy Control pairs with corporate documentation establishing acceptable use policies.
Physical access control directly limits physical proximity to network infrastructure using devices like mantrap portals and biometrics. Security awareness training educates users on recognizing threats like tailgating and phishing. Incident response plans outline emergency response steps following a breach. Administrative controls establish corporate rules, governance, and written security guidelines.
Adım Adım Çözüm
Anahtar Kavram
Classification of Enterprise Security Program Elements and Controls