nerdexam
Cisco

500-651 · Question #7

Which two options are attack vectors protected by Identity and Access Control? (Choose two.)

The correct answer is B. Mobile C. Endpoints. Mobile (B) and Endpoints (C) are the two attack vectors specifically protected by Identity and Access Control (IAC) because they represent the primary surfaces where user identities are authenticated and access decisions are enforced - think logging into a corporate app on your…

Endpoint Security

Question

Which two options are attack vectors protected by Identity and Access Control? (Choose two.)

Options

  • ABackups
  • BMobile
  • CEndpoints
  • DCloud apps
  • EVoicemail

How the community answered

(38 responses)
  • A
    8% (3)
  • B
    84% (32)
  • D
    3% (1)
  • E
    5% (2)

Explanation

Mobile (B) and Endpoints (C) are the two attack vectors specifically protected by Identity and Access Control (IAC) because they represent the primary surfaces where user identities are authenticated and access decisions are enforced - think logging into a corporate app on your phone or entering credentials on a laptop. IAC solutions like MFA, conditional access policies, and device compliance checks directly guard these entry points against credential theft, unauthorized access, and session hijacking.

Backups (A) fall under data protection and disaster recovery domains, not IAC - they concern data integrity and availability, not who is authenticating. Cloud apps (D) are protected by Cloud Access Security Brokers (CASB) and application security controls, which are distinct security pillars even though IAC integrates with them. Voicemail (E) is not a recognized IAC attack vector in standard security frameworks; it belongs more to unified communications security.

Memory tip: Think "ME needs IAC" - Mobile and Endpoints are where humans physically touch systems with their identities, making them the natural domain of Identity and Access Control.

Topics

#Identity and Access Control#Endpoint Security#Mobile Security#Attack Vectors

Community Discussion

No community discussion yet for this question.

Full 500-651 Practice