Soru

Zorluk: OrtaWorkstation Hardening and Best Practices

An IT technician is tasked with applying baseline security controls to a newly provisioned standalone Windows computer before placing it into service. Place the following workstation hardening steps in the correct chronological order in which they should be executed from first to last.

  1. 1Change default administrative credentials and disable the built-in Guest account.
  2. 2Install the latest operating system security patches and update malware signatures.
  3. 3Disable unnecessary background services, close unneeded network ports, and turn off AutoRun features.
  4. 4Configure Local Security Policies, including account lockout thresholds and screensaver password lockouts on idle.

Cevap

The correct order begins with securing account credentials (disabling Guest and changing default administrative passwords), followed by applying system updates and patches, disabling unneeded services and features to minimize the attack surface, and concluding with configuring local security policy controls.
The proper sequence for workstation hardening dictates securing account access first to prevent administrative exploitation, followed by updating and patching system software, disabling non-essential services and features to minimize attack vectors, and finally establishing local security policy thresholds.

Adım Adım Çözüm

1
Secure local account access
Default administrative credentials are changed and the Guest account is disabled.
Securing local administrative accounts prevents unauthorized privileged access while performing further system management.
2
Apply system updates and patches
The OS is fully updated with current security patches and malware definitions.
Known security vulnerabilities are remediated before applying system policies.
3
Minimize attack surface
Unused services, open network ports, and AutoRun capabilities are turned off.
Closing unused entry points restricts potential vectors for unauthorized network access or unauthorized media execution.
4
Enforce local security policies
Account lockout thresholds and screensaver password requirements are enabled.
Configuring local security policies establishes operational session security for everyday usage.

Anahtar Kavram

Workstation Hardening Procedural Sequence
Bu soruyu puanla