An enterprise security policy requires that any unauthorized changes to server system configurations are automatically detected and restored to a pre-approved security state. Which of the following operational controls best meets this requirement?
- Automated configuration management baseline enforcementCevap
- BCentralized SIEM security audit log retention
- CHost-based firewall traffic filtering rules
- DScheduled manual patch deployment procedures
Cevap
Automated configuration management baseline enforcement
Automated configuration management baseline enforcement continuously compares system settings against an established baseline and automatically remediates configuration drift by restoring approved settings.
Adım Adım Çözüm
Anahtar Kavram
Configuration Drift and Automated Baseline Enforcement