CAS-002 · Question #572
CAS-002 Question #572: Real Exam Question with Answer & Explanation
The correct answer is D: Enforcement of security policies on mobile/remote devices, standard images and device. When all devices must support collaboration, VoIP, and achieve 6-nines availability under equal CIA weighting, enforcing security policies with standard images across all device types provides the most balanced and comprehensive control.
Question
Options
- ADeployment of multiple standard images based on individual hardware configurations,
- BEnforcement of strict network access controls and bandwidth minimization techniques, a
- CDeployment of a unified VDI across all devices, SSD RAID in all servers, multiple identical
- DEnforcement of security policies on mobile/remote devices, standard images and device
Explanation
When all devices must support collaboration, VoIP, and achieve 6-nines availability under equal CIA weighting, enforcing security policies with standard images across all device types provides the most balanced and comprehensive control.
Common mistakes.
- A. Multiple images based on individual hardware configurations introduces inconsistency and increases the attack surface, conflicting with the need for uniform security across all collaborating devices.
- B. Strict bandwidth minimization techniques directly undermine the VoIP and teleconference readiness requirement, as real-time multimedia traffic requires adequate, prioritized bandwidth.
- C. A centralized VDI introduces a single point of failure that is difficult to achieve 6-nines availability for, and SSD RAID alone does not address the full CIA triad or the mobile/remote device security requirement.
Concept tested. Security architecture balancing CIA, availability, and unified device policy
Reference. https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/final
Community Discussion
No community discussion yet for this question.