During a routine compliance audit, a security team discovers that network edge firewalls across several branch offices frequently deviate from approved hardening standards. Investigation reveals that local technicians frequently perform out-of-band emergency modifications to resolve service outages, which are never synchronized back to the central repository. Which of the following technical and procedural controls should the security team implement to resolve configuration drift and ensure ongoing baseline compliance? (Select TWO.)
- Deploy an automated configuration management tool to continuously monitor appliances and enforce authorized baseline templates.Cevap
- BImplement host-based intrusion prevention agents on the edge firewalls to block local administrative access attempts during outages.
- Establish a formal change management procedure requiring emergency modifications to undergo post-implementation review and baseline updates.Cevap
- DReclassify configuration baseline documentation from mandatory operational standards to non-binding security guidelines.
- EConfigure access control lists on perimeter firewalls to block all inbound administrative traffic from remote management subnets.
Cevap
The organization should implement automated configuration management to continuously monitor baseline compliance and establish a formal change management procedure for documenting emergency hotfixes.
Remediating uncoordinated configuration drift requires a combination of technical automation and governance. Deploying automated configuration management software continuously validates device states against defined templates and remediates unauthorized drift. Concurrently, establishing a formal change management process ensures emergency hotfixes undergo retroactive review so valid changes are synchronized back into baseline configurations.
Adım Adım Çözüm
Anahtar Kavram
Configuration Drift and Remediation Controls
Tahmini Süre:1m 30s