nerdexam
CompTIA

CAS-001 · Question #303

An organization is preparing to upgrade its firewall and NIPS infrastructure and has narrowed the vendor choices down to two platforms. The integrator chosen to assist the organization with the…

The correct answer is B. Develop testing criteria and evaluate each environment in-house. The question asks for the MOST comprehensive evaluation method. Answer B (develop testing criteria and evaluate in-house) is correct because it allows the organization to define success criteria specific to their own environment, traffic patterns, and security requirements…

Research and Analysis

Question

An organization is preparing to upgrade its firewall and NIPS infrastructure and has narrowed the vendor choices down to two platforms. The integrator chosen to assist the organization with the deployment has many clients running a mixture of the possible combinations of environments. Which of the following is the MOST comprehensive method for evaluating the two platforms?

Options

  • ABenchmark each possible solution with the integrators existing client deployments.
  • BDevelop testing criteria and evaluate each environment in-house.
  • CRun virtual test scenarios to validate the potential solutions.
  • DUse results from each vendor's test labs to determine adherence to project requirements.

How the community answered

(17 responses)
  • A
    12% (2)
  • B
    65% (11)
  • C
    6% (1)
  • D
    18% (3)

Explanation

The question asks for the MOST comprehensive evaluation method. Answer B (develop testing criteria and evaluate in-house) is correct because it allows the organization to define success criteria specific to their own environment, traffic patterns, and security requirements, then test both platforms under controlled, representative conditions. Option A (benchmarking against the integrator's other clients) relies on environments that may not match the organization's needs. Option C (virtual test scenarios) is less realistic than testing with actual hardware and traffic. Option D (vendor test lab results) is the least objective - vendors design their own tests to showcase strengths and hide weaknesses. Independent, criteria-driven, in-house testing is the gold standard for unbiased platform evaluation.

Topics

#firewall evaluation#NIPS#vendor assessment#security testing

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice