nerdexam
CompTIA

CAS-002 · Question #110

A security engineer at a major financial institution is prototyping multiple secure network configurations. The testing is focused on understanding the impact each potential design will have on the…

The correct answer is A. Decommissioning the existing network smoothly, implementing maintenance and operations. When deploying a new network design in a financial institution, the primary security lifecycle concerns are decommissioning the existing network smoothly and establishing ongoing maintenance and operations for the new design.

Technical Integration of Enterprise Components

Question

A security engineer at a major financial institution is prototyping multiple secure network configurations. The testing is focused on understanding the impact each potential design will have on the three major security tenants of the network. All designs must take into account the stringent compliance and reporting requirements for most worldwide financial institutions. Which of the following is the BEST list of security lifecycle related concerns related to deploying the final design?

Options

  • ADecommissioning the existing network smoothly, implementing maintenance and operations
  • BInteroperability with the Security Administration Remote Access protocol, integrity of the data
  • CResistance of the new network design to DDoS attacks, ability to ensure confidentiality of all
  • DDecommissioning plan for the new network, proper disposal protocols for the existing
  • EEnsuring smooth transition of maintenance resources to support the new network, updating

How the community answered

(30 responses)
  • A
    67% (20)
  • B
    10% (3)
  • C
    7% (2)
  • E
    17% (5)

Why each option

When deploying a new network design in a financial institution, the primary security lifecycle concerns are decommissioning the existing network smoothly and establishing ongoing maintenance and operations for the new design.

ADecommissioning the existing network smoothly, implementing maintenance and operationsCorrect

Securely decommissioning the existing network addresses the safe retirement of legacy equipment and sensitive data, while implementing maintenance and operations ensures the new design is sustainably managed within the compliance and reporting framework required of financial institutions - both are critical post-deployment lifecycle responsibilities.

BInteroperability with the Security Administration Remote Access protocol, integrity of the data

SARA (Security Administration Remote Access) is not a widely recognized standard protocol relevant to network design lifecycle concerns, making this answer technically inaccurate and incomplete.

CResistance of the new network design to DDoS attacks, ability to ensure confidentiality of all

DDoS resistance and confidentiality are security design requirements that should be addressed before deployment, not post-deployment lifecycle management concerns.

DDecommissioning plan for the new network, proper disposal protocols for the existing

Planning for the eventual decommissioning of the newly deployed network is premature at the time of initial deployment; the immediate lifecycle concern is retiring the existing infrastructure, not planning the new network's end of life.

EEnsuring smooth transition of maintenance resources to support the new network, updating

Transitioning maintenance resources is only one aspect of lifecycle management and omits the equally critical requirement to securely decommission the legacy network infrastructure.

Concept tested: Security lifecycle management for network transition

Source: https://csrc.nist.gov/publications/detail/sp/800-64/rev-2/final

Topics

#security lifecycle#network design#decommissioning#financial compliance

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice