nerdexam
Cisco

700-551 · Question #64

What are the three key issues that customers with compliance standards issues are dealing with? (Choose three.)

The correct answer is A. Lack of access policies D. Device incompatibility F. Network visibility. Customers dealing with compliance standards (such as PCI-DSS, HIPAA, or SOX) consistently struggle with lack of access policies (A), device incompatibility (D), and network visibility (F) - the three pillars that auditors scrutinize most: who can access what, whether all…

Identifying Customer Needs and Security Opportunities

Question

What are the three key issues that customers with compliance standards issues are dealing with? (Choose three.)

Options

  • ALack of access policies
  • BGovernment controlled security
  • CE-mail exposure
  • DDevice incompatibility
  • EMalware attacks
  • FNetwork visibility

How the community answered

(40 responses)
  • A
    95% (38)
  • B
    3% (1)
  • C
    3% (1)

Explanation

Customers dealing with compliance standards (such as PCI-DSS, HIPAA, or SOX) consistently struggle with lack of access policies (A), device incompatibility (D), and network visibility (F) - the three pillars that auditors scrutinize most: who can access what, whether all devices meet security baselines, and whether the organization can actually see and report on network activity. Without access policies, organizations can't enforce least-privilege or role-based controls required by most frameworks. Device incompatibility means certain endpoints can't support required encryption, logging, or authentication protocols, creating compliance gaps. Poor network visibility makes it impossible to generate the audit trails and anomaly reports that compliance mandates.

The distractors fail because government-controlled security (B) is a governance concept, not a customer pain point; email exposure (C) is a specific threat vector rather than a compliance framework issue category; and malware attacks (E) are a security risk that compliance helps mitigate, not a compliance issue itself.

Memory tip: Think "AVF" - Access, Visibility, Fit (device fit/compatibility) - the three things compliance auditors always ask: Who has access? Can you see your network? Do your devices meet the standard?

Topics

#Compliance standards#Access control policies#Network visibility#Device management

Community Discussion

No community discussion yet for this question.

Full 700-551 Practice