Soru

Zorluk: KolayZero Trust Architecture Principles

An organization is updating its enterprise security strategy to align with Zero Trust Architecture (ZTA) principles. Which of the following implementations best demonstrates the core Zero Trust tenet of "assume breach"?

  1. Encrypting all network communications and enforcing microsegmentation regardless of user or device locationCevap
  2. B
    Automatically trusting all internal subnet traffic once a user successfully authenticates at the primary edge firewall
  3. C
    Granting broad access rights to all internal file shares based solely on identity authentication without checking resource permissions
  4. D
    Deploying physical intrusion deterrence systems to completely replace software vulnerability management programs

Cevap

Encrypting all network communications and enforcing microsegmentation regardless of user or device location
The core Zero Trust tenet of 'assume breach' requires organizations to plan defenses as if attackers already have access to the internal network. Encrypting internal communications and implementing microsegmentation ensures that even if an internal host is compromised, lateral movement and unauthorized data interception are strictly controlled.

Adım Adım Çözüm

1
Identify the key tenet being evaluated
The core tenet is 'assume breach', which presumes attackers may already be inside the network environment.
Zero Trust assumes no implicit trust based solely on physical or network location.
2
Evaluate the architectural control that minimizes blast radius during a compromise
Microsegmentation and end-to-end encryption ensure lateral movement is prevented and data remains protected even if an internal host is compromised.
This continuously enforces strict access boundaries and limits exposure during an incident.

Anahtar Kavram

Assume Breach in Zero Trust Architecture
Tahmini Süre:45s
Bu soruyu puanla