712-50 · Question #113
Creating a secondary authentication process for network access would be an example of?
The correct answer is C. Supporting the concept of layered security. Creating a secondary authentication process - such as multi-factor authentication (MFA) or requiring a VPN before accessing internal resources - directly exemplifies layered security (option C), also called "defense in depth," where multiple independent controls are stacked so…
Question
Creating a secondary authentication process for network access would be an example of?
Options
- AAn administrator with too much time on their hands.
- BPutting undue time commitment on the system administrator.
- CSupporting the concept of layered security
- DNetwork segmentation.
How the community answered
(24 responses)- A4% (1)
- B17% (4)
- C71% (17)
- D8% (2)
Explanation
Creating a secondary authentication process - such as multi-factor authentication (MFA) or requiring a VPN before accessing internal resources - directly exemplifies layered security (option C), also called "defense in depth," where multiple independent controls are stacked so that if one fails, others still protect the asset. Option A is dismissive and not a recognized security concept; option B frames the practice negatively as a burden, but that characterization doesn't describe what the process is. Option D (network segmentation) refers to dividing a network into isolated zones/subnets, which is a different control entirely - it restricts lateral movement, not initial authentication.
Memory tip: Think of layered security like an onion - each layer (firewall, authentication, encryption, monitoring) makes an attacker peel through more defenses. Any time you see "additional/secondary/extra" control stacked on top of an existing one, that's the layered security concept.
Topics
Community Discussion
No community discussion yet for this question.